On Thu, Aug 16, 2007 at 09:56:05AM +0200, Hans-Joerg Hoexer wrote:Well done this such policy Hans: 1. ps ax | g isa 914 ?? Is 0:00.02 isakmpd: monitor [priv] (isakmpd) 24931 ?? I 0:00.70 isakmpd ; ls -la /etc/isakmpd/isakmpd.policy ; -rw------- 1 root wheel 40 Aug 23 01:25 /etc/isakmpd/isakmpd.policy 2. cat /etc/ipsec.conf ike passive from any to 10.1.1.0/24 \ main auth hmac-sha1 enc 3des group modp1024 \ quick auth hmac-sha1 enc 3des psk q1w2e3 3. ipsecctl -F -f /etc/ipsec.conf 4. NO any problems from GreenBow VPN Client side: 20070823 014500 Default (SA CnxVpn1-P1) SEND phase 1 Main Mode [SA] [VID] [VID] [VID] [VID] 20070823 014500 Default (SA CnxVpn1-P1) RECV phase 1 Main Mode [SA] [VID] [VID] [VID] [VID] [VID] 20070823 014500 Default (SA CnxVpn1-P1) SEND phase 1 Main Mode [KEY_EXCH] [NONCE] [NAT_D] [NAT_D] 20070823 014500 Default (SA CnxVpn1-P1) RECV phase 1 Main Mode [KEY_EXCH] [NONCE] [NAT_D] [NAT_D] 20070823 014500 Default (SA CnxVpn1-P1) SEND phase 1 Main Mode [HASH] [ID] 20070823 014500 Default (SA CnxVpn1-P1) RECV phase 1 Main Mode [HASH] [ID] [NOTIFY] 20070823 014500 Default phase 1 done: initiator id 192.168.3.33, responder id 88.81.234.162 20070823 014500 Default (SA CnxVpn1-CnxVpn1-P2) SEND phase 2 Quick Mode [HASH] [SA] [NONCE] [ID] [ID] 20070823 014500 Default (SA CnxVpn1-CnxVpn1-P2) RECV phase 2 Quick Mode [HASH] [SA] [NONCE] [ID] [ID] 20070823 014500 Default (SA CnxVpn1-CnxVpn1-P2) SEND phase 2 Quick Mode [HASH] 20070823 014530 Default (SA CnxVpn1-P1) SEND Informational [HASH] [NOTIFY] type DPD_R_U_THERE 20070823 014530 Default (SA CnxVpn1-P1) RECV Informational [HASH] [NOTIFY] type DPD_R_U_THERE_ACK 20070823 014600 Default (SA CnxVpn1-P1) SEND Informational [HASH] [NOTIFY] type DPD_R_U_THERE 20070823 014600 Default (SA CnxVpn1-P1) RECV Informational [HASH] [NOTIFY] type DPD_R_U_THERE_ACK ; But, still not working for me without isakmpd.policies. ??? Thank you very much, -- Sergey Prysiazhnyi
| James Bottomley | Re: Integration of SCST in the mainstream Linux kernel |
| hinoue | System call interposition/unprotecting the table |
| Peter Zijlstra | [PATCH 6/6] sched: disabled rt-bandwidth by default |
| Tejun Heo | [PATCHSET] CUSE: implement CUSE |
git: | |
| Eric Lesh | Re: .gitlink for Summer of Code |
| Junio C Hamano | Re: git-show, was Re: What's in git.git (stable) |
| Daniel Berlin | git annotate runs out of memory |
| Scott Parish | Re: What's cooking in git.git (topics) |
| Richard Stallman | Re: Real men don't attack straw men |
| Pau | acer aspire one dmesg? |
| Marc Espie | Re: Real men don't attack straw men |
| Anselm R. Garbe | OpenBSD 4.0 / Xorg -> vesa 1920x1200 widescreen resolution |
| Jim Winstead Jr. | Re: Root Disk/Book Disk Compatibility |
| Stephen Pierce | SLS |
| Les Andrzejewski | X386/WD90C31/SUMSUNG SYNC MASTER 4 |
| Dave `geek' Gymer | WARNING (was Re: New afio release) |
