News: This forum is now permanently frozen.
Pages: [1]
Topic: mono to mono IPSEC issue  (Read 1401 times)
« on: May 15, 2008, 03:57:30 »
priorismono *
Posts: 11

HI to all

I try to setup a mono 1.3b10  to mono 1.2x  IPSec vpn. I seem to  get stuck in the second phase of the negotiation.

Quote
racoon: INFO: initiate new phase 1 negotiation: 75.xxx.xxx.100[500]<=>xxx.xxx.35.186[500]
racoon: INFO: begin Identity Protection mode.
racoon: INFO: received Vendor ID: KAME/racoon
racoon: INFO: received Vendor ID: KAME/racoon
racoon: INFO: ISAKMP-SA established 75.xxx.xxx.100[500]-xxx.xxx.35.186[500] spi:331a8b72ecfd30fa:53bcda11a0cbaffa
racoon: INFO: initiate new phase 2 negotiation: 75.xxx.xxx.100[500]<=>xxx.xxx.35.186[500]
racoon: ERROR: xxx.xxx.35.186 give up to get IPsec-SA due to time up to wait.

I have time out on both sides as follows: phase 1: 28800 / phase 2: 86400
Do I have to add extra firewall rules other than the automatic created  ones for IPSec?


I don't understand how it can time out in about 30 sec. after initiating.
Has anybody seen this problem?

Any hints?

 
Pages: [1]
 
 
Powered by SMF 1.1.20 | SMF © 2013, Simple Machines