[Openswan Users] Openswan finally refuses connection during or after phase 2

thomas4437 at gmx.de thomas4437 at gmx.de
Thu Oct 27 16:08:01 EDT 2011


So this may not be an openswan issue at all?

/var/log/debug contains nothing related to l2tp or ipsec
/var/log/l2tpns looks like that:

2011-10-26 19:35:23 00/00 Defaulting to PAP authentication
2011-10-26 19:35:23 00/00 L2TPNS version 2.1.21
2011-10-26 19:35:23 00/00 Copyright (c) 2003, 2004, 2005 Optus Internet Engineering
2011-10-26 19:35:23 00/00 Copyright (c) 2002 FireBrick (Andrews & Arnold Ltd / Watchfront Ltd) - GPL licenced
2011-10-26 19:35:23 00/00 Failed to get interface address for (eth0): No such device
2011-10-27 15:52:54 00/00 Defaulting to PAP authentication
2011-10-27 15:52:54 00/00 Heartbeat timeout 20 too low, adjusting to 411
2011-10-27 15:52:54 00/00 L2TPNS version 2.1.21
2011-10-27 15:52:54 00/00 Copyright (c) 2003, 2004, 2005 Optus Internet Engineering
2011-10-27 15:52:54 00/00 Copyright (c) 2002 FireBrick (Andrews & Arnold Ltd / Watchfront Ltd) - GPL licenced
2011-10-27 15:52:54 00/00 Set up on interface tun0
2011-10-27 15:52:54 00/00 Adding IP address range 192.168.23.32/28
2011-10-27 15:52:54 00/00 Route add 192.168.23.32/255.255.255.240
2011-10-27 15:52:54 00/00 IP address pool is 16 addresses
2011-10-27 15:53:35 00/00 Master timed out! Holding election...
2011-10-27 15:53:35 00/00 I am declaring myself the master!
2011-10-27 15:53:35 00/00 Error getting eth0 hardware address for GARP: No such device
2011-10-27 15:53:35 00/00 Warning: Fixed 59999 uninitialized sessions in becoming master!

Can't tell if there's any relevant error involved but doesn't seem to me since all messages are created during bootup.

l2tpns startup_config:
set debug 2
set log_file "/var/log/l2tpns"
set pid_file "/var/run/l2tpns.pid"
set l2tp_secret ""
set primary_dns 192.168.23.1
set secondary_dns 192.168.23.1
set primary_radius 127.0.0.1
set primary_radius_port 1812
set radius_secret "mysecret"
set accounting_dir "/var/run/l2tpns/acct"
set bind_address 192.168.23.21
set send_garp yes
set peer_address 192.168.23.1
set throttle_speed 64
set cluster_interface lo
set cluster_hb_interval 100
set cluster_hb_timeout 20


-------- Original-Nachricht --------
> Datum: Thu, 27 Oct 2011 13:31:42 -0600
> Von: Willie Gillespie <wgillespie+openswan at es2eng.com>
> An: thomas4437 at gmx.de
> CC: users at openswan.org
> Betreff: Re: [Openswan Users] Openswan finally refuses connection during or after phase 2

> On 10/27/2011 1:07 PM, thomas4437 at gmx.de wrote:
> > The best I got out of it is this:
> > tcpdump -i eth1 -n -p udp port 500 or udp port 4500
> > (running on VPN server)
> 
> Anything useful in /var/log/l2tpns or /var/log/debug?

-- 
Empfehlen Sie GMX DSL Ihren Freunden und Bekannten und wir
belohnen Sie mit bis zu 50,- Euro! https://freundschaftswerbung.gmx.de


More information about the Users mailing list