[Openswan Users] Apparent XAUTH failre iPhone to Openswan, ipsec w/ certificates

Michael Rightmire rightmire at team-datentechnik.de
Mon Oct 17 05:41:08 EDT 2011


I haven't found anything out yet. 

I did, however, completely room the openswan configuration (using emerge)...including verifying the openswan distribution package was wiped off the server. I did NOT however remove the " ./net-misc/openswan/openswan-2.6.xx.ebuild"s. 

I then used emerge again to reinstall openswan...and verified the USE_XAUTHPAM?=false.

However, I'm still having the same issue. 

One additional note...I am also getting the error ...
Expected MODE_CFG_REPLY did not contain username or password attribute
...in the ipsec.log. I DO have the username and password fields filled out in the iPhone's ipsec VPN configuration...so I'm not sure how to interpret this. 

Thanks!

-----Ursprüngliche Nachricht-----
Von: users-bounces at openswan.org [mailto:users-bounces at openswan.org] Im Auftrag von users-request at openswan.org
Gesendet: Samstag, 15. Oktober 2011 18:00
An: users at openswan.org
Betreff: Users Digest, Vol 95, Issue 25

Send Users mailing list submissions to
	users at openswan.org

To subscribe or unsubscribe via the World Wide Web, visit
	http://lists.openswan.org/mailman/listinfo/users
or, via email, send a message with subject or body 'help' to
	users-request at openswan.org

You can reach the person managing the list at
	users-owner at openswan.org

When replying, please edit your Subject line so it is more specific
than "Re: Contents of Users digest..."


Today's Topics:

   1. Re: Apparent XAUTH failre iPhone to Openswan,	ipsec w/
      identity certificates (Andreas Sch?fer)


----------------------------------------------------------------------

Message: 1
Date: Sat, 15 Oct 2011 06:15:47 +0000 (UTC)
From: Andreas Sch?fer <as at schaefer-bs.com>
Subject: Re: [Openswan Users] Apparent XAUTH failre iPhone to
	Openswan,	ipsec w/ identity certificates
To: users at lists.openswan.org
Message-ID: <loom.20111015T081158-960 at post.gmane.org>
Content-Type: text/plain; charset=us-ascii

Have a similar problem, did you recompile OpenSWAN with XAUTH_PAM=true??
Did you found out something meanwhile???

Oct 14 17:19:11 vm-vpn pluto[7689]: "iphone-ipsec"[1] 80.187.96.2 #1: 
XAUTH: Sending XAUTH Login/Password Request
Oct 14 17:19:11 vm-vpn pluto[7689]: "iphone-ipsec"[1] 80.187.96.2 #1: 
XAUTH: Sending Username/Password request (XAUTH_R0)
Oct 14 17:19:13 vm-vpn pluto[7689]: "iphone-ipsec"[1] 80.187.96.2 #1: 
discarding duplicate packet; already STATE_XAUTH_R0
Oct 14 17:19:21 vm-vpn pluto[7689]: last message repeated 2 times
Oct 14 17:19:21 vm-vpn pluto[7689]: "iphone-ipsec"[1] 80.187.96.2 #1: 
DPD: could not find newest phase 1 state
Oct 14 17:19:31 vm-vpn pluto[7689]: "iphone-ipsec"[1] 80.187.96.2 #1: 
discarding duplicate packet; already STATE_XAUTH_R0




------------------------------

_______________________________________________
Users mailing list
Users at openswan.org
http://lists.openswan.org/mailman/listinfo/users


End of Users Digest, Vol 95, Issue 25
*************************************






More information about the Users mailing list