[Swan] L2TP/IPsec with certificates: INVALID_KEY_INFORMATION

Paul Wouters paul at nohats.ca
Sun May 1 19:37:22 UTC 2016


On Sun, 1 May 2016, Sergio Belkin wrote:

>       So now xl2tpd needs to be started by you in client mode to do the L2TP
>       part.

> Really?
> 
> When I run,
> 
> echo "c windows" > /var/run/xl2tpd/l2tp-control
> 
> May  1 11:15:39 hope xl2tpd: xl2tpd[27077]: No such tunnel 'windows'

You named it differently in xl2tpd.conf?

> But... Should I ignore the INVALID_PAYLOAD_TYPE of ipsec?

No you cannot ignore that but your previous email did not show that
problem anymore. You can use "ipsec whack --trafficstatus" to see
the tunnel is there or not.

Paul


More information about the Swan mailing list