News: This forum is now permanently frozen.
Pages: [1]
Topic: 1.3b13 IPSEC Problem (crosspost from 1.3 development)  (Read 1902 times)
« on: August 13, 2008, 09:27:42 »
turbodonkey *
Posts: 3

I have been trying today to add an 8th tunnel to one of my networks, most endpoints run m0n0, a couple run sonicwalls etc.  All my m0n0walls are running the latest stable generic-pc image and run like a dream, for my latest wall I have one of the ALIX rack mount kits from applianceshop.eu which came with 1.3b9, I updated it to b13...

This tunnel will not come up, no matter what I do, remove, re-configure, ping, pong, reboot, scratch head...

I eventually downgraded the ALIX machine to 1.234 only to realise that it doesn't have driver support for the NIC's and lost all its interfaces!  So I have reflashed 1.3b13 to the CF and will try again tomorrow...

Has anyone had any similar experiences? or can anyone shed some light on my issue?  I know it's not a config issue, yes I had a colleague cast an eye over the settings to make sure I hadn't done anything stupid!

Both endpoints are reporting that phase 1 is timing out...  I can post more detail if I get the same issues tomorrow once I get back to work...

Many Thanks!

Edit: More Info

Aug 12 20:08:16 racoon: INFO: IPsec-SA request for 80.193.xxx.xxxqueued due to no phase1 found.
Aug 12 20:08:16 racoon: INFO: initiate new phase 1 negotiation: 81.6.xxx.xxx[500]<=>80.193.xxx.xxx[500]
Aug 12 20:08:16 racoon: INFO: begin Identity Protection mode.
Aug 12 20:08:22 racoon: ERROR: phase2 negotiation failed due to time up waiting for phase1. ESP 80.193.xxx.xxx[500]->81.6.xxx.xxx[500]
Aug 12 20:08:22 racoon: INFO: delete phase 2 handler.
Aug 12 20:08:41 racoon: INFO: request for establishing IPsec-SA was queued due to no phase1 found.
Aug 12 20:08:47 racoon: ERROR: phase2 negotiation failed due to time up waiting for phase1. ESP 80.193.xxx.xxx[500]->81.6.xxx.xxx[500]
Aug 12 20:08:47 racoon: INFO: delete phase 2 handler.

I have tried now with b13 and b9 both yeild the same results.  So right now I have a useless >
€299 "m0n0wall appliance" that is completely useless, compared with my 15 year old dell pos that has ran m0n0 for around 4 years perfectly!

Help!!
« Last Edit: August 13, 2008, 09:31:57 by turbodonkey »
« Reply #1 on: August 14, 2008, 18:52:35 »
turbodonkey *
Posts: 3

Seems to be a lot of unanswered posts here on this forum...

I sorted my problem by using pfsense instead, shame really, I prefer m0n0...
 
Pages: [1]
 
 
Powered by SMF 1.1.20 | SMF © 2013, Simple Machines