News: This forum is now permanently frozen.
Pages: [1]
Topic: ipsec policy problem  (Read 4778 times)
« on: May 16, 2007, 15:38:36 »
homegrown *
Posts: 6

I have 2 mono's, each behind a speedtouch router, i want to make a ipsec tunnel between them, but i wont work, sometimes when i reboot one of the systems, the connection will come up, but 99% he wont.

In the log i find the next error


acoon: ERROR: such policy already exists. anyway replace it: 192.168.2.0/24[0] 192.168.0.0/24[0] proto=any dir=out
May 13 10:44:23 racoon: ERROR: such policy already exists. anyway replace it: 192.168.2.0/24[0] 192.168.1.0/24[0] proto=any dir=out
May 13 10:44:23 racoon: ERROR: such policy already exists. anyway replace it: 192.168.2.4/32[0] 192.168.2.0/24[0] proto=any dir=out
May 13 10:44:23 racoon: ERROR: such policy already exists. anyway replace it: 192.168.0.0/24[0] 192.168.2.0/24[0] proto=any dir=in
May 13 10:44:23 racoon: ERROR: such policy already exists. anyway replace it: 192.168.1.0/24[0] 192.168.2.0/24[0] proto=any dir=in
May 13 10:44:23 racoon: ERROR: such policy already exists. anyway replace it: 192.168.2.0/24[0] 192.168.2.4/32[0] proto=any dir=in
« Reply #1 on: May 17, 2007, 22:01:47 »
darklogic *
Posts: 45

View questions. Are you trying to do NAT T. In other words are your trying to establish a tunnel from behind an already NATTED device. If so you will need to forward esp. Also I am assuming you are using 1.32b if any of this applies up above.
« Reply #2 on: May 20, 2007, 15:46:43 »
homegrown *
Posts: 6

see also topic http://forum.m0n0.ch/index.php/topic,484.0.html
 
Pages: [1]
 
 
Powered by SMF 1.1.20 | SMF © 2013, Simple Machines