[Openswan Users] Having trouble with OpenSwan Configuration

Steve Madel smadel at solutionary.com
Tue Feb 26 10:20:04 EST 2013


I am trying to set up Openswanso that I can connect things such 
asfirewalls to conect to it.  I am running into trouble with the 
following errors.

"test"[1] 192.168.11.5 #1: cannot respond to IPsec SA request because no 
connection is known for 
0.0.0.0/0===10.2.3.4<10.2.3.4>[+S=C]...192.168.11.5[+S=C]===0.0.0.0/0

state transition function for STATE_QUICK_R0 failed: INVALID_ID_INFORMATION

When setting up the other end of the connection I do not necessarily 
know what subnet is going to be tunneled, and do not necessarily know 
how the device will identify itself.  Here is a copy of my config.  Any 
help is appreciated.

conn test
         left=10.2.3.4
         leftsubnet=10.2.3.0/24
         leftnexthop=10.2.3.254
         leftid=10.2.3.4
         right=%any
         rightsubnet=vhost:%no,%priv
         auth=esp
         authby=secret
         pfs=no
         compress=yes
         auto=add
     #type=tunnel

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openswan.org/pipermail/users/attachments/20130226/6227de78/attachment.html>


More information about the Users mailing list