[Swan] Policy not coming up

Madhan Raj madhanrajrm at gmail.com
Mon Jun 10 14:02:29 UTC 2019


Hi ,

when i try to bring up my policy failing with below error any idea why this
is happening?

[root at ccm-87 ~]# ipsec auto --up 71772488137_x509
002 "71772488137_x509" #306: initiating Main Mode
104 "71772488137_x509" #306: STATE_MAIN_I1: initiate
003 "71772488137_x509" #306: ignoring informational payload
NO_PROPOSAL_CHOSEN, msgid=00000000, length=12
003 "71772488137_x509" #306: received and ignored informational message
010 "71772488137_x509" #306: STATE_MAIN_I1: retransmission; will wait 500ms
for response
003 "71772488137_x509" #306: ignoring informational payload
NO_PROPOSAL_CHOSEN, msgid=00000000, length=12
003 "71772488137_x509" #306: received and ignored informational message
010 "71772488137_x509" #306: STATE_MAIN_I1: retransmission; will wait
1000ms for response
003 "71772488137_x509" #306: ignoring informational payload
NO_PROPOSAL_CHOSEN, msgid=00000000, length=12
003 "71772488137_x509" #306: received and ignored informational message
010 "71772488137_x509" #306: STATE_MAIN_I1: retransmission; will wait
2000ms for response
003 "71772488137_x509" #306: ignoring informational payload
NO_PROPOSAL_CHOSEN, msgid=00000000, length=12
003 "71772488137_x509" #306: received and ignored informational message
010 "71772488137_x509" #306: STATE_MAIN_I1: retransmission; will wait
4000ms for response
003 "71772488137_x509" #306: ignoring informational payload
NO_PROPOSAL_CHOSEN, msgid=00000000, length=12
003 "71772488137_x509" #306: received and ignored informational message
010 "71772488137_x509" #306: STATE_MAIN_I1: retransmission; will wait
8000ms for response

my policy file:.
[image: image.png]

my nssdb entry:-

[root at ccm-87 ~]# certutil -L -d /usr/local/platform/.security/ipsec/

Certificate Nickname                                         Trust
Attributes

 SSL,S/MIME,JAR/XPI

DODParent-INTERMEDIATECA-CA-4                                c,c,c
DODParent-ROOTCA-CA-2                                        c,c,c
ipsec-db                                                     u,u,u
ccm-88                                                       c,c,c


Thanks,
Madhan
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.libreswan.org/pipermail/swan/attachments/20190610/a9901c89/attachment-0001.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: image.png
Type: image/png
Size: 72303 bytes
Desc: not available
URL: <https://lists.libreswan.org/pipermail/swan/attachments/20190610/a9901c89/attachment-0001.png>


More information about the Swan mailing list