Re: [Users] Can't connect from Dinamip IP

From: Sam Sgro (sam_at_freeswan.org)
Date: Fri Jan 10 2003 - 18:48:30 CET


-----BEGIN PGP SIGNED MESSAGE-----

On Fri, 10 Jan 2003, Emiliano wrote:

> Hello, im using freeswan to connect 2 linux boxes : static ip linux -----
> internet ---- dynamic ip linux
> I run:
> ipsec auto --verbose --up lintolin
> And shows:
> 002 "lintolin" #1: initiating Main Mode
> 104 "lintolin" #1: STATE_MAIN_I1: initiate
> 002 "lintolin" #1: ERROR: asynchronous network error report on eth1 for
> message to 200.X.X.X port 500, complainant 200.X.X.X: Connection refused
> [errno 111, origin ICMP type 3 code 3 (not authenticated)]

You have an issue with your firewall rules. Have you allowed UDP port 500
traffic, and protocol 50 (ESP)? Read:

http://www.freeswan.org/freeswan_snaps/CURRENT-SNAP/doc/firewall.html#simple.rules
 
- --
Sam Sgro
sam_at_freeswan.org

-----BEGIN PGP SIGNATURE-----
Version: 2.6.3ia
Charset: noconv
Comment: For the matching public key, finger the Reply-To: address.

iQCVAwUBPh8HcEOSC4btEQUtAQHKHwP/dRN90m2wzcYk+GjyGSDKNvti/AQxgSw6
rPiQfwWKsD5Mogr7BnVlzxPsoCE/K95ZaQxVOkhinQgTWCHlD9sB9loVRWvogQKD
RjhrfFcmHY2oB+92H8XKhwWQnlEqC8nBDZ8nKiEVlID27rTUlsrQZdydTudR0WGg
/75JFiM53ho=
=RjCp
-----END PGP SIGNATURE-----

_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users



This archive was generated by hypermail 2.1.5 : Sun Jan 12 2003 - 05:21:07 CET