[Users] OAKLEY... and I thought they were glasses...

From: George Vieira (GeorgeV_at_citadelcomputer.com.au)
Date: Tue Sep 10 2002 - 02:29:32 CEST


WTF!?? Don't tell me I need to apply a patch of some sort. This is
connecting to a Cisco router of some sort using ESP MD5 and PSK.. something
is not matching and we can't find out what.. I don't know where to start
looking for this.

Where do I find documentation on all the info about each of the states ie.
MAIN_STATE_I1 etc..etc..???

10/09/2002 09:52:30 AM | <84> | Pluto[3892] | 'threecom-work' #8: no
acceptable Oakley Transform
10/09/2002 09:52:30 AM | <84> | Pluto[3892] | 'threecom-work' #8: only
OAKLEY_GROUP_MODP1024 and OAKLEY_GROUP_MODP1536 supported. Attribute
OAKLEY_GROUP_DESCRIPTION
10/09/2002 09:52:30 AM | <84> | Pluto[3892] | 'threecom-work' #8: responding
to Main Mode
10/09/2002 09:52:35 AM | <84> | Pluto[3892] | 'threecom-work' #9: no
acceptable Oakley Transform
10/09/2002 09:52:35 AM | <84> | Pluto[3892] | 'threecom-work' #9: only
OAKLEY_GROUP_MODP1024 and OAKLEY_GROUP_MODP1536 supported. Attribute
OAKLEY_GROUP_DESCRIPTION
10/09/2002 09:52:35 AM | <84> | Pluto[3892] | 'threecom-work' #9: responding
to Main Mode
10/09/2002 09:52:40 AM | <84> | Pluto[3892] | 'threecom-work' #10: no
acceptable Oakley Transform
10/09/2002 09:52:40 AM | <84> | Pluto[3892] | 'threecom-work' #10: only
OAKLEY_GROUP_MODP1024 and OAKLEY_GROUP_MODP1536 supported. Attribute
OAKLEY_GROUP_DESCRIPTION
10/09/2002 09:52:40 AM | <84> | Pluto[3892] | 'threecom-work' #10:
responding to Main Mode
10/09/2002 09:52:45 AM | <84> | Pluto[3892] | 'threecom-work' #11: no
acceptable Oakley Transform
10/09/2002 09:52:45 AM | <84> | Pluto[3892] | 'threecom-work' #11: only
OAKLEY_GROUP_MODP1024 and OAKLEY_GROUP_MODP1536 supported. Attribute
OAKLEY_GROUP_DESCRIPTION

10/09/2002 10:23:53 AM | <27> | ipsec__plutorun | ...could not start conn
'threecom-work'
10/09/2002 10:23:54 AM | <27> | ipsec__plutorun | 010 'threecom-work' #1:
STATE_MAIN_I1: retransmission; will wait 40s for response
10/09/2002 10:23:54 AM | <27> | ipsec__plutorun | 010 'threecom-work' #1:
STATE_MAIN_I1: retransmission; will wait 20s for response
10/09/2002 10:23:54 AM | <27> | ipsec__plutorun | 104 'threecom-work' #1:
STATE_MAIN_I1: initiate
10/09/2002 10:23:54 AM | <84> | Pluto[9960] | 'threecom-work': deleting
connection

Config file: stuffed if I know it's right...

conn threecom-work
        left=203.x.x.x
        leftsubnet=100.x.x.x/24
        right=203.y.y.y # companys gateway address
        rightsubnet=192.x.x.x/24 # private IP address in company
        rightnexthop=203.y.y.z # first hop of company gateway
        rightupdown=/etc/ipsec/threecom-work.updown
        auto=start
        authby=secret
        keyexchange=ike
        keylife=8h
        type=tunnel
        pfs=no
        esp=3des-md5-96

ipsec.secrets: Should be right...

# Citadel to 3Com
203.y.y.y 203.x.x.x: PSK "something_long"

thanks,
George Vieira
Systems Manager
Citadel Computer Systems P/L
http://www.citadelcomputer.com.au

Confidentiality Notice : The information in this e-mail together with any
attachments may contain confidential or legally privileged information that
is intended only for the individual or entity named in the e-mail address.
If you are not the intended recipient, you are hereby notified that any
disclosure, copying, distribution, or reliance upon the contents of this
e-mail is strictly prohibited. If you received this e-mail transmission in
error, please inform the sender and then please delete the message from your
computer/network. Thank you.
_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users



This archive was generated by hypermail 2.1.4 : Tue Sep 10 2002 - 05:19:58 CEST