You have "authby=secret". Therefore you need to provide a PSK (private shrared key) for the connection at both ends (specified in ipsec.secrets). conn amazonec2 authby=secret -------------- next part -------------- An HTML attachment was scrubbed... URL: <http://lists.openswan.org/pipermail/users/attachments/20121202/0675a7c8/attachment.html>