IPv6 readyNote: This archive passes through spamassassin. Every mail marked with the subject "*****SPAM*****" has exceed a certain threshold of spam-like behaviour.

Re: [Users] no connection known for

From: Chris Wilson (chris_at_netservers.co.uk)
Date: Fri May 31 2002 - 11:21:10 CEST


Hi Ronny,

Here is at least one error:

> > > ""siv" #3: cannot respond to IPsec SA request because no connection is
> > > known for 192.9.222.0/24===62.159.207.34...193.158.30.131"

This means that the other side thinks there is no leftsubnet,
and rightsubnet is 192.9.222.0/24 ...

> left=193.158.30.131
> leftsubnet=172.23.0.0/16
> right=62.159.207.34
> rightsubnet=0.0.0.0/0

... but your ipsec.conf says that leftsubnet is 172.23.0.0/16 and
rightsubnet is 0.0.0.0/0. Therefore, the attempted connection does not
match the "siv" connection, or any other connection, in ipsec.conf, so
FreeSWAN refuses to allow it and prints that error message.

If you delete the leftsubnet line, and change the rightsubnet to
192.9.222.0/24, then the connections should work (or at least proceed to
another error).

Ciao, Chris.

-- 
   ___ __     _
 / __// / ,__(_)_  | Chris Wilson -- UNIX Firewall Lead Developer |
/ (_ / ,\/ _/ /_ \ | NetServers.co.uk http://www.netservers.co.uk |
\ _//_/_/_//_/___/ | 21 Signet Court, Cambridge, UK. 01223 576516 |

_______________________________________________ Users mailing list Users_at_lists.freeswan.org http://lists.freeswan.org/mailman/listinfo/users



This archive was generated by hypermail 2.1.3 : Mon Jul 29 2002 - 05:20:08 CEST