[Users] Freeswan Problem

From: Craig Whitmore (lennon_at_orcon.net.nz)
Date: Tue Oct 08 2002 - 04:57:56 CEST


Hi there.. I have a freeswan tunnel connected to a FW1 system and it "dies" after a while..
When the tunnel is going it works 100%

Running on a Debian 3 Box using debian Packages

Oct 8 14:38:08 buyline Pluto[2385]: "buyline1" #96: responding to Main Mode
Oct 8 14:38:08 buyline Pluto[2385]: "buyline1" #96: peer requested 86400 seconds which exceeds our limit 28800 seconds. Attribute OAKLEY_LIFE_DURATION (variable length)
Oct 8 14:38:08 buyline Pluto[2385]: "buyline1" #96: only OAKLEY_GROUP_MODP1024 and OAKLEY_GROUP_MODP1536 supported. Attribute OAKLEY_GROUP_DESCRIPTION
Oct 8 14:38:08 buyline Pluto[2385]: "buyline1" #96: no acceptable Oakley Transform
Oct 8 14:38:10 buyline Pluto[2385]: packet from 202.x.x.x:500: ignoring Vendor ID payload

and it repeats this on and on and one until I stop it and then start it again..

Relivant Config of Freeswan is

conn buyline1
        type=tunnel
        right=219.88.x.x
        rightnexthop=219.88.x.x
        left=202.x.x.x
        leftsubnet=202.x.x.x/32
        auto=start
        authby=secret
        pfs=no
        keyexchange=ike
        esp=3des-sha1
        keylife=24h

Has anyone got any ideas?

Thanks
Craig Whitmore
Orcon Internet
http://www.orcon.net.nz

_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users



This archive was generated by hypermail 2.1.5 : Wed Oct 09 2002 - 05:20:23 CEST