Hi
I am trying to connect my home lan to my compagny lan with 2 sme's in server and gateway mode, using Darrell May's FreeS ipsec howto
http://myezserver.com/downloads/mitel/contrib/freeswan/sme55/freeswan-howto.htmlHOME: sme 5,5 update2 using DHCP on external IF
when i'm reviewing the configuration there's no gateway ip, but with the #route command i can see the default IP, This IP should be the Remote router's external gateway IP or what!???
With the #ifconfig command i can see that the ipsec0 is reciving packs (RX) but is dropping them all.
COMP. Sme 5,5 up2 with fixed IP
NAT and all 3 Encrypt traffic is on YES and the public encryption key is dobbel checked, but now i can't even ping the remote ip so i have no other ways than to drive to the compagny to get the SME console, so i hope i only have problems in my home Sme.
A paste from my massage log:
Feb 14 16:15:01 gateway e-smith-bg: ipsec_setup: Starting FreeS/WAN IPsec 1.97...
Feb 14 16:15:01 gateway ipsec_setup: Starting FreeS/WAN IPsec 1.97...
Feb 14 16:15:01 gateway ipsec_setup: KLIPS debug none'
Feb 14 16:15:01 gateway ipsec_setup: KLIPS ipsec0 on ppp0 80.196.xxx.xx/255.255.255.255 pointopoint 195.249.x.xxx
Feb 14 16:15:02 gateway ipsec_setup: ...FreeS/WAN IPsec started
Feb 14 16:15:04 gateway ipsec__plutorun: 003 "net.192.168.3.0-gate.local": route-host command exited with status 7
Feb 14 16:15:04 gateway ipsec__plutorun: 025 "net.192.168.3.0-gate.local": could not route
Feb 14 16:15:04 gateway ipsec__plutorun: ...could not route conn "net.192.168.3.0-gate.local"
Feb 14 16:15:04 gateway ipsec__plutorun: 003 "net.192.168.3.0-net.local": route-client command exited with status 7
Feb 14 16:15:04 gateway ipsec__plutorun: 003 "net.192.168.3.0-net.local": down-client command exited with status 1
Feb 14 16:15:04 gateway ipsec__plutorun: 025 "net.192.168.3.0-net.local": could not route
Feb 14 16:15:04 gateway ipsec__plutorun: ...could not route conn "net.192.168.3.0-net.local"
Feb 14 16:15:05 gateway ipsec__plutorun: 003 "gate.192.168.3.0-gate.local": route-host command exited with status 7
Feb 14 16:15:05 gateway ipsec__plutorun: 025 "gate.192.168.3.0-gate.local": could not route
Feb 14 16:15:05 gateway ipsec__plutorun: ...could not route conn "gate.192.168.3.0-gate.local"
Feb 14 16:15:05 gateway ipsec__plutorun: 003 "gate.192.168.3.0-net.local": route-client command exited with status 7
Feb 14 16:15:05 gateway ipsec__plutorun: 003 "gate.192.168.3.0-net.local": down-client command exited with status 1
Feb 14 16:15:05 gateway ipsec__plutorun: 025 "gate.192.168.3.0-net.local": could not route
Feb 14 16:15:05 gateway ipsec__plutorun: ...could not route conn "gate.192.168.3.0-net.local"
Feb 14 16:15:10 gateway kernel: ip_demasq_esp(): Inbound from 80.196.xx.67 SPI 7AEE7338 has no masq table entry.
Feb 14 16:15:58 gateway kernel: ip_demasq_esp(): Inbound from 80.196.xx.67 SPI 7AEE7338 has no masq table entry.
Feb 14 16:16:17 gateway ipsec__plutorun: 104 "net.192.168.3.0-gate.local" #1: STATE_MAIN_I1: initiate
Feb 14 16:16:17 gateway ipsec__plutorun: 106 "net.192.168.3.0-gate.local" #1: STATE_MAIN_I2: sent MI2, expecting MR2
Feb 14 16:16:17 gateway ipsec__plutorun: 108 "net.192.168.3.0-gate.local" #1: STATE_MAIN_I3: sent MI3, expecting MR3
Feb 14 16:16:17 gateway ipsec__plutorun: 004 "net.192.168.3.0-gate.local" #1: STATE_MAIN_I4: ISAKMP SA established
Feb 14 16:16:17 gateway ipsec__plutorun: 003 "net.192.168.3.0-gate.local" #2: regenerating DH private secret to avoid Pluto 1.0 bug handling public value with leading zero
Feb 14 16:16:17 gateway ipsec__plutorun: 112 "net.192.168.3.0-gate.local" #2: STATE_QUICK_I1: initiate
Feb 14 16:16:17 gateway ipsec__plutorun: 003 "net.192.168.3.0-gate.local" #2: route-host command exited with status 7
Feb 14 16:16:17 gateway ipsec__plutorun: 032 "net.192.168.3.0-gate.local" #2: STATE_QUICK_I1: internal error
Feb 14 16:16:17 gateway ipsec__plutorun: 003 "net.192.168.3.0-gate.local" #2: route-host command exited with status 7
Feb 14 16:16:17 gateway ipsec__plutorun: 032 "net.192.168.3.0-gate.local" #2: STATE_QUICK_I1: internal error
Feb 14 16:16:17 gateway ipsec__plutorun: 010 "net.192.168.3.0-gate.local" #2: STATE_QUICK_I1: retransmission; will wait 20s for response
Feb 14 16:16:17 gateway ipsec__plutorun: 010 "net.192.168.3.0-gate.local" #2: STATE_QUICK_I1: retransmission; will wait 40s for response
Feb 14 16:16:17 gateway ipsec__plutorun: 003 "net.192.168.3.0-gate.local" #2: route-host command exited with status 7
Feb 14 16:16:17 gateway ipsec__plutorun: 032 "net.192.168.3.0-gate.local" #2: STATE_QUICK_I1: internal error
Feb 14 16:16:17 gateway ipsec__plutorun: 031 "net.192.168.3.0-gate.local" #2: max number of retransmissions (2) reached STATE_QUICK_I1. No acceptable response to our first Quick Mode message: perhaps peer likes no proposal
Feb 14 16:16:17 gateway ipsec__plutorun: 000 "net.192.168.3.0-gate.local" #2: starting keying attempt 2 of an unlimited number, but releasing whack
Feb 14 16:16:17 gateway ipsec__plutorun: ...could not start conn "net.192.168.3.0-gate.local"
Feb 14 16:17:27 gateway ipsec__plutorun: 112 "net.192.168.3.0-net.local" #4: STATE_QUICK_I1: initiate
Feb 14 16:17:27 gateway ipsec__plutorun: 010 "net.192.168.3.0-net.local" #4: STATE_QUICK_I1: retransmission; will wait 20s for response
Feb 14 16:17:27 gateway ipsec__plutorun: 003 "net.192.168.3.0-net.local" #4: route-client command exited with status 7
Feb 14 16:17:27 gateway ipsec__plutorun: 032 "net.192.168.3.0-net.local" #4: STATE_QUICK_I1: internal error
Feb 14 16:17:27 gateway ipsec__plutorun: 003 "net.192.168.3.0-net.local" #4: route-client command exited with status 7
Feb 14 16:17:27 gateway ipsec__plutorun: 032 "net.192.168.3.0-net.local" #4: STATE_QUICK_I1: internal error
Feb 14 16:17:27 gateway ipsec__plutorun: 010 "net.192.168.3.0-net.local" #4: STATE_QUICK_I1: retransmission; will wait 40s for response
Feb 14 16:17:27 gateway ipsec__plutorun: 003 "net.192.168.3.0-net.local" #4: route-client command exited with status 7
Feb 14 16:17:27 gateway ipsec__plutorun: 032 "net.192.168.3.0-net.local" #4: STATE_QUICK_I1: internal error
Feb 14 16:17:27 gateway ipsec__plutorun: 031 "net.192.168.3.0-net.local" #4: max number of retransmissions (2) reached STATE_QUICK_I1. No acceptable response to our first Quick Mode message: perhaps peer likes no proposal
Feb 14 16:17:27 gateway ipsec__plutorun: 000 "net.192.168.3.0-net.local" #4: starting keying attempt 2 of an unlimited number, but releasing whack
Feb 14 16:17:27 gateway ipsec__plutorun: ...could not start conn "net.192.168.3.0-net.local"
Feb 14 16:17:35 gateway last message repeated 2 times
I hope someone can help me out.. and sorry 4 my english..
Jono