News: This forum is now permanently frozen.
Pages: [1]
Topic: 1.3 m0n0wall IPsec, "Negotiation mode" is broken on 'Aggressive'  (Read 4264 times)
« on: December 13, 2009, 20:21:09 »
knightmb ****
Posts: 341

1.3 m0n0wall, "Negotiation mode" is broken on 'Aggressive'

I setup two brand new 1.3 m0n0wall boxes on a private network to finally figure this one out.

The instructions on the website recommend "Aggressive' instead of 'main' to speed things up, but I've found this is broken in 1.3 vs. the 1.2X series that I just tested with.

This works properly in the 1.2X series between two m0n0wall boxes, but not in 1.3 because of this setting. I've had 1 test network and 1 site to confirm for the 1.3 Generic PC build release.

Hope someone else can confirm so I know I'm not crazy  Smiley

Radius Service for m0n0wall Captive Portal - http://amaranthinetech.com
« Reply #1 on: December 23, 2009, 05:40:27 »
cmb *****
Posts: 851

What do your IPsec logs show?
« Reply #2 on: December 23, 2009, 06:14:10 »
knightmb ****
Posts: 341

What do your IPsec logs show?
It shows everything successful, even shows the bridge in the logs and the routing between them. But for some reason, no data will flow. When it's change to "main", everything works like it should as before. That's what stumped me for so long, no errors in the logs. They are identical between changing the modes, so you wouldn't know what was causing it at first.

Radius Service for m0n0wall Captive Portal - http://amaranthinetech.com
« Reply #3 on: April 21, 2010, 06:38:04 »
knightmb ****
Posts: 341

Well by magic, this is no longer an issue in 1.32

I upgrade a few machines and just out of curiosity, see the negotiation mode back to Aggressive and it worked, very well!

So, this is good news for all the IPsec servers spread all over the Internet  Grin

Radius Service for m0n0wall Captive Portal - http://amaranthinetech.com
 
Pages: [1]
 
 
Powered by SMF 1.1.20 | SMF © 2013, Simple Machines