[Swan] upgrade to 3.18 broke roadwarrior connection

Charles D. Van Dusen charlie at im-design.net
Mon Nov 28 13:45:29 UTC 2016


Hi Paul,

Again thanks for the speedy response.

This really helped. I used 17/1701 for both leftprotoport and rightprotoport. That allowed the ipsec command to get past the error. 

Thanks Again,

Charlie

-----Original Message-----
From: Paul Wouters [mailto:paul at nohats.ca] 
Sent: Friday, November 25, 2016 10:32 AM
To: Charles D. Van Dusen <charlie at im-design.net>
Subject: RE: [Swan] upgrade to 3.18 broke roadwarrior connection

On Fri, 25 Nov 2016, Charles D. Van Dusen wrote:

> Subject: RE: [Swan] upgrade to 3.18 broke roadwarrior connection
> 
> Thanks for the quick response.
> 
> So I tried swapping the leftprotoport and rightprotoport settings but I am getting the same error.

That seems not possible because the error happens because you are trying to initiate a "template conn" instead of a "static conn" and the only thing that causes a conn to become a "template" in your conn section is the 17/%any ?

You can try using 17/1701 for both ends if libreswan is the initiator?

You can also mail me a plutodebug=all log to see if i can find anything else?

Paul


More information about the Swan mailing list