[prev in list] [next in list] [prev in thread] [next in thread] 

List:       strongswan-users
Subject:    [strongSwan] up-client command exited with
From:       pirx01 () freenet ! de
Date:       2007-03-07 8:57:10
Message-ID: E1HOrxO-0001Tk-Ef () www16 ! emo ! freenet-rz ! de
[Download RAW message or body]

 hello mailinglist,

i have a small problem with one of my gateways. sometimes the following error
happens:

Mar  5 02:00:33 ipsec_starter[2696]: Starting strongSwan IPsec 2.6.3
[starter]...
Mar  5 02:00:54 pluto[2742]: Starting Pluto (strongSwan Version 2.6.3 VENDORID
KEYRR)
Mar  5 02:00:54 pluto[2742]:   including NAT-Traversal patch (Version 0.6c)
Mar  5 02:00:54 pluto[2742]: ike_alg: Activating OAKLEY_AES_CBC encryption: Ok
Mar  5 02:00:54 pluto[2742]: ike_alg: Activating OAKLEY_BLOWFISH_CBC
encryption: Ok
Mar  5 02:00:54 pluto[2742]: ike_alg: Activating OAKLEY_SERPENT_CBC encryption:
Ok
Mar  5 02:00:54 pluto[2742]: ike_alg: Activating OAKLEY_SHA2_256 hash: Ok
Mar  5 02:00:54 pluto[2742]: ike_alg: Activating OAKLEY_SHA2_512 hash: Ok
Mar  5 02:00:54 pluto[2742]: ike_alg: Activating OAKLEY_TWOFISH_CBC encryption:
Ok
Mar  5 02:00:54 pluto[2742]: ike_alg: Activating OAKLEY_TWOFISH_CBC_SSH
encryption: Ok
Mar  5 02:00:54 pluto[2742]: Using Linux 2.6 IPsec interface code
Mar  5 02:00:54 pluto[2742]: Changing to directory '/etc/ipsec.d/cacerts'
Mar  5 02:00:54 pluto[2742]: Changing to directory '/etc/ipsec.d/aacerts'
Mar  5 02:00:54 pluto[2742]: Changing to directory '/etc/ipsec.d/ocspcerts'
Mar  5 02:00:54 pluto[2742]: Changing to directory '/etc/ipsec.d/crls'
Mar  5 02:00:54 pluto[2742]: Changing to directory '/etc/ipsec.d/acerts'
Mar  5 02:00:54 pluto[2742]: listening for IKE messages
Mar  5 02:00:54 pluto[2742]: adding interface ppp0/ppp0 82.83.69.118:500
Mar  5 02:00:54 pluto[2742]: adding interface ppp0/ppp0 82.83.69.118:4500
Mar  5 02:00:54 pluto[2742]: adding interface eth1/eth1 192.168.4.235:500
Mar  5 02:00:54 pluto[2742]: adding interface eth1/eth1 192.168.4.235:4500
Mar  5 02:00:54 pluto[2742]: adding interface lo/lo 127.0.0.1:500
Mar  5 02:00:54 pluto[2742]: adding interface lo/lo 127.0.0.1:4500
Mar  5 02:00:54 pluto[2742]: loading secrets from "/etc/ipsec.secrets"
Mar  5 02:00:54 pluto[2742]: added connection description "GW1_to_GW2"
Mar  5 02:00:54 pluto[2742]: "GW1_to_GW2" #1: initiating Main Mode
Mar  5 02:00:54 pluto[2742]: "GW1_to_GW2" #1: ignoring Vendor ID payload
[strongSwan 2.5.7]
Mar  5 02:00:54 pluto[2742]: "GW1_to_GW2" #1: received Vendor ID payload [Dead
Peer Detection]
Mar  5 02:00:54 pluto[2742]: "GW1_to_GW2" #1: received Vendor ID payload [RFC
3947]
Mar  5 02:00:54 pluto[2742]: "GW1_to_GW2" #1: enabling possible NAT-traversal
with method 3
Mar  5 02:00:54 pluto[2742]: "GW1_to_GW2" #1: NAT-Traversal: Result using RFC
3947: no NAT detected
Mar  5 02:00:54 pluto[2742]: "GW1_to_GW2" #1: Peer ID is ID_IPV4_ADDR:
'217.217.79.162'
Mar  5 02:00:54 pluto[2742]: "GW1_to_GW2" #1: ISAKMP SA established
Mar  5 02:00:54 pluto[2742]: "GW1_to_GW2" #2: initiating Quick Mode
PSK+ENCRYPT+TUNNEL+PFS+UP {using isakmp#1}
Mar  5 02:00:54 pluto[2742]: "GW1_to_GW2" #2: up-client command exited with
signal 11
Mar  5 02:01:04 pluto[2742]: "GW1_to_GW2" #2: ERROR: netlink response for Add
SA esp.dd265f5f@82.83.69.118 included errno 3: No such process

any ideas? i didn't found any information about this problem in the malinglist.
after the problem happens, i do a "ipsec restart" and everything is okay.

regards

oliver
 
_______________________________________________
Users mailing list
Users@lists.strongswan.org
https://lists.strongswan.org/mailman/listinfo/users
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic