[Openswan Users] Windows 7 IKEv2 no reaction at all

Willie Gillespie wgillespie+openswan at es2eng.com
Tue Aug 9 17:38:13 EDT 2011


On 08/09/2011 03:22 PM, Paul Wouters wrote:
> On Tue, 9 Aug 2011, Roland Plüss wrote:
>
>>> That is impossible. Openswan ALWAYS logs "Received packet from" before
>>> even
>>> processing whether it is an IKEv1 or IKEv2 packet.
>> Is there a way I can test this somehow? Or rather some kind of debug
>> option to activate tremendous debug output to see if they really do not
>> arrive at openswan?
>
> plutodebug=all logs everything and the kitchen sink. Please don't attach
> such a log to the mailing list.
>
> But also, your tcpdump -i ethX port 500 should show the Windows7 first packet....

He did show his tcpdump output (below) in his very first message:

root at server:~> tcpdump -i eth1 host 192.168.3.220
tcpdump: verbose output suppressed, use -v or -vv for full protocol decode
listening on eth1, link-type EN10MB (Ethernet), capture size 68 bytes
20:44:08.847654 IP 192.168.3.220.isakmp > 192.168.3.2.isakmp: [|isakmp]
20:44:09.848820 IP 192.168.3.220.isakmp > 192.168.3.2.isakmp: [|isakmp]
20:44:11.876885 IP 192.168.3.220.isakmp > 192.168.3.2.isakmp: [|isakmp]

/var/log/everything/current shows no reaction at all. Not a single line 
stating anything.


More information about the Users mailing list