[Openswan Users] Openswan Xl2tpd error when connecting VPN on

Willie Gillespie wgillespie+openswan at es2eng.com
Sun Jan 23 17:27:55 EST 2011


Mateen Fugawala wrote:
> 000 virtual_private (%priv):
> 000 - allowed 3 subnets: 10.0.0.0/8, 192.168.0.0/16, 192.168.1.0/24
> 000 - disallowed 0 subnets:
> 000 WARNING: Disallowed subnets in virtual_private= is empty. If you have
> 000          private address space in internal use, it should be excluded!

Looks like your setting change may not be catching on.

Also, from your log files:
Jan 22 14:36:12 fedoravm pluto[9013]: "L2TP-PSK"[1] 192.168.1.2 #1: 
STATE_MAIN_R3: sent MR3, ISAKMP SA established 
{auth=OAKLEY_PRESHARED_KEY cipher=aes_256 prf=oakley_sha group=modp2048}
Jan 22 14:36:12 fedoravm pluto[9013]: "L2TP-PSK"[1] 192.168.1.2 #1: the 
peer proposed: 192.168.1.11/32:17/1701 -> 192.168.1.2/32:17/0
Jan 22 14:36:12 fedoravm pluto[9013]: "L2TP-PSK"[1] 192.168.1.2 #1: 
cannot respond to IPsec SA request because no connection is known for 
192.168.1.11<192.168.1.11>[+S=C]:17/1701...192.168.1.2[+S=C]:17/1701

The last line indicates what the problem is.  I'm not exactly sure how 
to fix it.  Anyone else have thoughts here?


More information about the Users mailing list