[Vpn-help] No IPSEC SA after ISAKMP

David Santinoli marauder at tiscali.it
Sat Oct 20 06:26:03 CDT 2007


On Fri, Oct 19, 2007 at 06:52:31PM -0500, Matthew Grooms wrote:
> 
> I looked further into the NAT-D issue and there was in fact a problem
> in main mode. I was looking at aggressive mode before. Sorry about
> that. I also back ported the fix for the Client Netmask bug. Forgot
> about that as well :/

Hi Matthew,
   the latest release fixed both the NAT and the netmask issues.
Thanks.

However, the IPSEC SA still fails to be established.  The only hint I
get from the client is a "DB : phase2 not found" line in IKE's log,
while the server's does not yield anything useful.

I was wondering whether providing you a Linux virtual machine with
a StrongS/WAN setup and full root access would make your debugging
easier and quicker.  Please let me know off-list.

Cheers,
 David
-- 
 David Santinoli
 Tieffe Sistemi S.r.l.                      viale Piceno 21, Milano
 www.tieffesistemi.com                         tel. +39 02 45490882



More information about the vpn-help mailing list