[Swan] V3.5 and Kernel 3.9 modprobe ipsec failed

Muenz, Michael m.muenz at spam-fetish.org
Tue Sep 10 17:08:20 EEST 2013


Am 21.07.2013 09:19, schrieb Sven Schiwek:
> I made some testing with Debian stable kernel (3.2) and testing kernel (3.9). Both have set CONFIG_NET_NS but only with kernel 3.2 Libreswan klips is loading fine.
> I also tested Openswan 2.6.39 and ipsec is loading fine with the new 3.9 kernel but Openswan has some other problems with NAT …
> However for me it looks like something changed in Libreswan V3.5 with the result that is's not compatible with Debian testing anymore.
>
> Any help is greatly appreciated.
> Sven
>
>

Hey Sven,

trying to reproduce this. Created a new vanilla kernel (3.9.11) and also 
tested 3.9 backport kernel with Wheezy.
As you said, the errors occurs with Libreswan 3.5, but for me, also 
Openswan doesn't start:

Sep 10 16:04:33 otrs-test ipsec__plutorun: Starting Pluto subsystem...
Sep 10 16:04:33 otrs-test ipsec__plutorun: !pluto failure!:  exited with 
error status 1
Sep 10 16:04:33 otrs-test ipsec__plutorun: restarting IPsec after pause...

How did you solve this one?

Michael

-- 
www.muenz-it.de
- Cisco, Linux, Networks



More information about the Swan mailing list