Questions tagged [openswan]

129 questions
4
votes
3 answers

FortiGate IPsec VPN: Configuring Multiple Phase 2 Connections (Multiple Subnets)

I am trying to make an IPsec connection to a FortiGate router using OpenSwan. The FortiGate sits on two distinct subnets and I need to access both of them. In the FortiGate I have defined one Phase 1 connection and one Phase 2 connection. This…
FixMaker
  • 235
  • 1
  • 3
  • 9
4
votes
2 answers

Connecting to IPSec/L2tp with OpenSwan/xl2tpd from Windows7 to Amazon EC2

I am trying to connect from my Windows7 at home to my OpenSwan/xl2tpd setup on an Ubuntu EC2 instance at Amazon. It is a connection being NATed from both the client and server ends. I was following tips from several threads for how to accomplish…
Noam Singer
  • 41
  • 1
  • 5
4
votes
0 answers

How do I configure OpenSwan to allow pure IPsec (not L2TP) connections from an iPhone?

Similar to this question, I want to configure an IPsec server on Linux which will accept connections from the iPhone. However, unlike the other question, I want to be able to test with pre-shared keys before making the jump to…
mpontillo
  • 924
  • 6
  • 23
3
votes
1 answer

Tunnel is up but I can't ping

I need to understand and resolve my issue. I know openswan works because when I connect from home network with an internal ip address of 10.0.0.97 to work's VPN, I'm able to ping but when I use the public xFinity wifi it indicates that the tunnel is…
BioRod
  • 273
  • 3
  • 12
3
votes
0 answers

OpenSwan IPSec log explanation

I am trying to understand the IPSec logs. Would be really great if someone can help me to understand the main things I look for and how to troubleshoot any ipsec issue. Would be really great of someone can help me to visualise how this IPSec tunnel…
rrene
  • 131
  • 1
3
votes
2 answers

subnet-to-subnet libreswan ipsec vpn

I'm configuring a "subnet to subnet VPN" between two Centos 7 server using libreswan. Each server has two nic as showed in the following image. I would allow secure communication between the subnets 172.18.0.0/16 and 172.19.0.0/16 establishing a vpn…
NoNoNo
  • 1,939
  • 14
  • 19
3
votes
0 answers

Openswan and sonicwall and encryption parameters

This error leads me to investigate my encryption parameters: 003 "sonicwall" #2: ignoring unknown Vendor ID payload [...] Can some expert please have a look at tell me what is wrong? Sonic wall (web interface): ESP: 3DES/HMAC SHA1 (IKE) IKE phase…
jcalfee314
  • 259
  • 1
  • 5
  • 14
3
votes
1 answer

Openswan Cisco ASA 9.1 -- cannot resopnd to IPsec SA request because no connection is known for

Ok, so I have a simple VPN IPSEC setup with a single Linux host that has a public IP address and a loopback interface of 172.16.255.1. On the right side I have a Cisco ASA 5505 9.1. the issue is the Cisco ASA says when debugging "PHASE 2 Completed"…
Jim
  • 978
  • 7
  • 20
  • 32
3
votes
1 answer

L2TP VPN Connection on Debian Squeeze

I need to make an L2TP VPN connection from a Debian Squeeze server. What I have is: The server IP address Shared Key My username and password Just using these 3 parameteres I can establish the VPN connection from my Mac OSX computer right from…
Lashae
  • 183
  • 1
  • 12
3
votes
3 answers

openswan multiple subnets routing issue

I am trying to setup an OpenSwan(2.6.32) on CentOS 6.5 (final) to connect the remote VPC gateway on Amazon cloud. I got the tunnel up. However, only the traffic from/to the last ip range defined in leftsubnets is routed. The first one works for a…
user2413287
  • 31
  • 1
  • 1
  • 3
3
votes
1 answer

IKE Phase 1 Aggressive Mode exchange does not complete

I've configured a 3G IP Gateway of mine to connect using IKE Phase 1 Aggressive Mode with PSK to my openswan installation running on Ubuntu server 12.04. I've configured openswan as follows: /etc/ipsec.conf: version 2.0 config setup …
Isaac Sutherland
  • 767
  • 2
  • 9
  • 16
2
votes
1 answer

OpenSwan IPsec tunnel to Azure Gateway is established but unable to connect

I am currently trying to set up a IPsec tunnel between my on-premise center and to the VPN in Azure. I am setting up OpenSwan 2.6.23 on an Ubuntu Lucid box, and my box is behind a NAT. ipsec.conf config setup nat_traversal=yes …
leeeennyy
  • 33
  • 4
2
votes
2 answers

ipsec: Can't authenticate: no preshared key found for

I'm using Openswan with ipsec and ipsec keeps complaining about the shared-key not being present. I'm running Ubuntu 14.04 . I'm just experimenting on a couple of internal systems since I'm new to this. Output: root@ip-10-1-1-4:/etc# ipsec auto --up…
Dustin Oprea
  • 510
  • 1
  • 7
  • 19
2
votes
0 answers

Openswan IPSec VPN on AWS tunnel established but no traffic

I am setting up a tunnel with a telco using AWS/VPC/EC2/Centos7/Libreswan and have been stuck for weeks. Appreciate any help! I have 192.168.16.73 (VPN GW, EIP 52.76.x.x) and 192.168.16.116 (Encryption Domain Server). The tunnel seems to be up but…
2
votes
1 answer

Two tunnels with same rightsubnet for StrongSWAN/OpenSWAN

I'm trying to set up the "Option 3" configuration for Google Cloud VPN, with two Google Cloud VPN gateways on the left and StrongSWAN or OpenSWAN on the right: If you have two Peer VPN gateways and two Compute Engine VPN gateways, each Compute…
lambshaanxy
  • 123
  • 1
  • 5
1
2
3
8 9