Hi Paul, <br> I m trying to establish a remote access VPN for my VPN client with openswan as VPN server. But I am getting the below error message<br>[root@localhost ~]# cat /var/log/messages | tail<br>Mar 16 17:45:18 localhost ipsec__plutorun: adjusting ipsec.d to /etc/ipsec.d<br>
Mar 16 17:45:18 localhost ipsec__plutorun: /usr/libexec/ipsec/addconn Non-fips mode set in /proc/sys/crypto/fips_enabled<br>Mar 16 17:45:18 localhost ipsec__plutorun: /usr/libexec/ipsec/addconn Non-fips mode set in /proc/sys/crypto/fips_enabled<br>
Mar 16 17:45:18 localhost ipsec__plutorun: /usr/libexec/ipsec/addconn Non-fips mode set in /proc/sys/crypto/fips_enabled<br>Mar 16 17:45:18 localhost ipsec__plutorun: 002 added connection description "north-east"<br>
Mar 16 17:45:18 localhost ipsec__plutorun: multiple default routes, using 172.31.114.225 on eth0<br>Mar 16 17:45:18 localhost ipsec__plutorun: 003 NAT-Traversal: Trying new style NAT-T<br>Mar 16 17:45:18 localhost ipsec__plutorun: 003 NAT-Traversal: ESPINUDP(1) setup failed for new style NAT-T family IPv4 (errno=19)<br>
Mar 16 17:45:18 localhost ipsec__plutorun: 003 NAT-Traversal: Trying old style NAT-T<br>Mar 16 17:45:18 localhost ipsec__plutorun: 003 ERROR "/etc/ipsec.secrets" line 3: index "tester" does not look numeric and name lookup failed<br>
<br>Topology:<br>+++++++<br><br>VPNC<br>client GW Openswan(VPN server)<br>10.1.1.1 ----------- 10.1.1.2 -------- 172.31.114.226 --------- 172.31.114.227<br>
<br>Configuration details<br>++++++++++++++<br>VPNC client<br>__________<br><br>Enter IPSec gateway address: 172.31.114.227<br>Enter IPSec ID for <a href="http://172.31.114.227">172.31.114.227</a>: <a href="http://test.vpn.com">test.vpn.com</a><br>
Enter IPSec secret for <a href="mailto:test.vpn.com@172.31.114.227">test.vpn.com@172.31.114.227</a>:<br>test<br>Enter username for <a href="http://172.31.114.227">172.31.114.227</a>: tester<br>Enter password for <a href="mailto:tester@172.31.114.227">tester@172.31.114.227</a>:<br>
tester<br><br>/etc/ipsec.conf<br>+++++++++++<br>config setup<br> protostack=netkey<br> nat_traversal=yes<br> virtual_private=<br> oe=off<br> nhelpers=0<br> interfaces=%defaultroute<br>
conn north-east<br> type=tunnel<br> left=%any<br> right=172.31.114.227<br> rightid=@<a href="http://test.vpn.com">test.vpn.com</a><br> leftxauthclient=yes<br> rightxauthserver=yes<br> leftxauthusername=tester<br>
keyexchange=ike<br> auto=add<br> authby=secret<br> pfs=no<br> rekey=yes<br> ikelifetime=3000s<br> keylife=3000s<br> keyingtries=0<br><br>/etc/ipsec.secrets<br>+++++++++++++<br><br>0.0.0.0 <a href="http://172.31.114.227">172.31.114.227</a>: PSK "test"<br>
tester: XAUTH "tester"<br><br><br>Please help me<br><br>Regards,<br>Saravanan N<br><br>