From: Andreas Steffen (andreas.steffen_at_strongsec.net)
Date: Thu Aug 01 2002 - 13:26:42 CEST
W2k has a problem either with its private key or its own certificate.
Please check the oakley.log for details. FreeS/WAN hasn't sent its
certificate yet.
Regards
Andreas
Andy Pryer wrote:
> Hi All,
>
> Yes, I know this question gets asked loads, but I have a strange problem
> I can't resolve. I should point out that I've had it working before,
> but can't see where I'm making the mistake.
>
> Anyway, RedHat v7.3 with 2.4.18-3 kernel, FreeS/WAN 1.98b and X509 v0.9.14.
>
> I can't seem to find out what the following message means :-
>
> Aug 1 10:49:53 firewall pluto[12168]: packet from 192.168.10.7:500:
> ignoring Vendor ID payload
> Aug 1 10:49:53 firewall pluto[12168]: "lan-alias"[1] 192.168.10.7 #1:
> responding to Main Mode from unknown peer 192.168.10.7
> Aug 1 10:49:54 firewall pluto[12168]: "lan-alias"[1] 192.168.10.7 #1:
> encrypted Informational Exchange message is invalid because it is for
> incomplete ISAKMP SA
>
> The last line is the bit I don't understand. Can anyone explain what
> this means in terms of where I could have an error with the X509 certs ?
>
> Thanks
>
> Andy
-- ====================================================================== Andreas Steffen e-mail: andreas.steffen_at_strongsec.com strongSec GmbH phone: +41 76 340 25 56 Alter Zürichweg 20 home: http://www.strongsec.com CH-8952 Schlieren (Switzerland) ==========================================[strong internet security]==_______________________________________________ Users mailing list Users_at_lists.freeswan.org http://lists.freeswan.org/mailman/listinfo/users
This archive was generated by hypermail 2.1.4 : Mon Aug 05 2002 - 21:01:35 CEST