par Shyron » 12 Mars 2004 00:42
Bonjour,
<BR>J'ai un problème avec la configuration de Fresswan.
<BR>Je souhaite relier deux postes (192.168.0.1 et 192.168.0.2) qui disposent de la même version de Mandrake (9.2) et de Freeswan (2.01). Que j'utilise les clefs secrètes (PSK) ou publiques (RSA) j'obtiens toujours la même erreur.
<BR>
<BR>
<BR>voilà ce que j'obtiens lorsque je tape "ipsec auto --verbose --up vpn" :
<BR>
<BR>002 "vpn" #1: initiating Main Mode
<BR>104 "vpn" #1: STATE_MAIN_I1: initiate
<BR>106 "vpn" #1: STATE_MAIN_I2: sent MI2, expecting MR2
<BR>108 "vpn" #1: STATE_MAIN_I3: sent MI3, expecting MR3
<BR>002 "vpn" #1: Peer ID is ID_IPV4_ADDR: '192.168.0.2'
<BR>002 "vpn" #1: ISAKMP SA established
<BR>004 "vpn" #1: STATE_MAIN_I4: ISAKMP SA established
<BR>002 "vpn" #2: initiating Quick Mode PSK+ENCRYPT+TUNNEL+PFS+UP
<BR>112 "vpn" #2: STATE_QUICK_I1: initiate
<BR>010 "vpn" #2: STATE_QUICK_I1: retransmission; will wait 20s for response
<BR>010 "vpn" #2: STATE_QUICK_I1: retransmission; will wait 40s for response
<BR>031 "vpn" #2: max number of retransmissions (2) reached STATE_QUICK_I1. No acceptable response to our first Quick Mode message: perhaps peer likes no proposal
<BR>000 "vpn" #2: starting keying attempt 2 of an unlimited number, but releasing whack
<BR>
<BR>
<BR>Mon fichier ipsec.conf (du poste 192.168.0.1, pour l'autre, left et right sont inversés)
<BR>
<BR>version 2.0
<BR>
<BR>config setup
<BR> interfaces="ipsec0=eth0"
<BR>
<BR>conn vpn
<BR> authby=secret
<BR> left=192.168.0.1
<BR> right=192.168.0.2
<BR> auto=add
<BR>
<BR>
<BR>Mon fichier ipsec.secrets
<BR>
<BR>192.168.0.1 192.168.0.2 : PSK "MotDePasse"