par milo_guy » 03 Fév 2004 18:54
voila bonjour a tous,
<BR>
<BR>j'ai un ipcop 1.3 fix 7 et j'ai configurer un profil pour authoriser une slackware a s'y connecter mais je me fais insulter, l'authentification est reussie mais après j'ai beaucoup de mal a dechiffrer le log.
<BR>
<BR><!-- BBcode auto-mailto start --><a href="mailto:root@slack:~#">root@slack:~#</a><!-- BBCode auto-mailto end --> ipsec auto --up vpn
<BR>104 "vpn" #1: STATE_MAIN_I1: initiate
<BR>106 "vpn" #1: STATE_MAIN_I2: sent MI2, expecting MR2
<BR>108 "vpn" #1: STATE_MAIN_I3: sent MI3, expecting MR3
<BR>004 "vpn" #1: STATE_MAIN_I4: ISAKMP SA established
<BR>112 "vpn" #2: STATE_QUICK_I1: initiate
<BR>003 ERROR: "vpn" #2: pfkey write() of SADB_ADD message 8 for Add SA <!-- BBcode auto-mailto start --><a href="mailto:esp.ba19a0ab@195.242.162.8">esp.ba19a0ab@195.242.162.8</a><!-- BBCode auto-mailto end --> failed. Errno 22: Invalid argument
<BR>003 "vpn" #2: ASSERTION FAILED at kernel_pfkey.c:554: 0
<BR>000 "vpn" #2: interface ipsec0/eth0 195.242.XXX.8
<BR>000 "vpn" #2: %myid = (none)
<BR>000 "vpn" #2: debug none
<BR>000 "vpn" #2:
<BR>000 "vpn" #2: "vpn": 195.242.XXX.8/32===195.242.XXX.8---195.242.XXX.1...195.242.XXX.1---195.242.XXX.5===192.168.1.0/24; unrouted; eroute owner: #0
<BR>000 "vpn" #2: "vpn": ike_life: 3600s; ipsec_life: 28800s; rekey_margin: 540s; rekey_fuzz: 100%; keyingtries: 0
<BR>000 "vpn" #2: "vpn": policy: PSK+ENCRYPT+TUNNEL+PFS+UP; prio: 24,32; interface: eth0;
<BR>000 "vpn" #2: "vpn": newest ISAKMP SA: #1; newest IPsec SA: #0;
<BR>000 "vpn" #2:
<BR>000 "vpn" #2: #2: "vpn" STATE_QUICK_I1 (sent QI1, expecting QR1); EVENT_RETRANSMIT in 9s
<BR>000 "vpn" #2: #1: "vpn" STATE_MAIN_I4 (ISAKMP SA established); EVENT_SA_REPLACE in 2962s; newest ISAKMP
<BR>
<BR>
<BR>
<BR>j'avais pensé a une incompatibilité entre les différentes versions de freeswan car ipcop utilisent la 1.99 et ma slack une 2.04
<BR>merci pour vos reponses
<BR>@micalement