From: Sam Sgro (sam_at_freeswan.org)
Date: Wed Oct 30 2002 - 21:56:13 CET
-----BEGIN PGP SIGNED MESSAGE-----
On Wed, 30 Oct 2002, Geoff Silver wrote:
> I just subscribed to the list today, so I hope it will help :-) I'm
> trying to get FreeSWAN working - Debian Linux 3.0 with FreeSWAN version
> 1.96 (Debian package). The network is set up as follows:
*snip*
> I see is when Irun 'ipsec look' and get:
> 10.1.29.0/24 -> 10.10.1.0/24 => %trap (0)
We've added the connection, and are trying to "up" it.
> Oct 29 17:31:51 vpn-test ipsec__plutorun: whack: read() failed (104
> Connection reset by peer)
> Oct 29 17:31:51 vpn-test kernel: klips_debug:pfkey_destroy_socket: .
> Oct 29 17:31:51 vpn-test ipsec__plutorun: ...could not add conn "remote-gw"
> Oct 29 17:31:51 vpn-test kernel: klips_debug:pfkey_remove_socket: .
> Oct 29 17:31:51 vpn-test ipsec__plutorun: whack: Pluto is not running (no
> "/var/run/pluto.ctl")
Yikes! That error message indicates Pluto, our IKE daemon and userspace
workhose, isn't running. What messages result when you issue service ipsec
start or the equivalent? The best debugging tool you can use will be "ipsec
barf". It summarizes all of the information relevant to debugging an ipsec
connection; post it to the list/accessible website if you can't figure this
out.
Your configs look great. Everything should work acceptably once you've sorted
this out
- --
Sam Sgro
sam_at_freeswan.org
-----BEGIN PGP SIGNATURE-----
Version: 2.6.3ia
Charset: noconv
Comment: For the matching public key, finger the Reply-To: address.
iQCVAwUBPcBHbkOSC4btEQUtAQF1LwP+LR4klQ496zZ5P5BeW9ArbrL8Gec+sNpc
W4R93kFJ0dfyBNHnSZzHSm/MO3cbVRbmqXzFuaGIDAoFCksxkBECKkuXHVpGcAhN
VkKs9b2+TA2IFxvoUKNcQM70yueemdmOdVAi7NdsEh5exk7cXVu5i+C5xweDXPJt
/UtMq1/9jwI=
=xPtK
-----END PGP SIGNATURE-----
_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users
This archive was generated by hypermail 2.1.5 : Sat Nov 02 2002 - 05:20:34 CET