[Openswan Users] openswan 2.4.x is working but 2.6.x cannot initiate

Roel van Meer rolek at bokxing.nl
Thu Sep 2 11:14:21 EDT 2010


Paul Wouters writes:

>> With 2.6.x, I see the linux box sending the STATE_MAIN_I1: initiate packet,
>> but there is no reply whatsoever.
> 
> That is most likely a firewall somewhere blocking your packet.

That wouldn't explain why 2.4.x works, would it? When I use a 2.4 version of 
openswan, everything works. After an upgrade to 2.6.x I can no longer 
initiate connections from the linux box (but if a connection is initiated 
from the draytek, it is established without trouble). It's completely 
reproducible. The only thing required to make or break it is down- or 
upgrading the userspace openswan tools.

Might it be that 2.4.x is changing stuff in proc that 2.6.x doesn't? I 
haven't looked at that yet..

Regards,

roel


More information about the Users mailing list