Velocity Reviews - Computer Hardware Reviews

Velocity Reviews > General Computer Discussion > General Computer Support > name based ipsec -problem hostname resolves to mutiple IPs

Reply
Thread Tools

name based ipsec -problem hostname resolves to mutiple IPs

 
 
indira24 indira24 is offline
Junior Member
Join Date: Mar 2009
Posts: 1
 
      03-02-2009
Hi,

I am using openswan 2.4.5 with 2.6.23.5 kernel. I am facing problem when i am using host name for right in ipsec.conf file. It has two IP's 44.0.0.2 and 45.0.0.2.
ipsec barf shows

Mar 2 03:29:18 fatpipe pluto[5473]: packet from 46.0.0.2:500: received Vendor ID payload [Openswan (this version) 2.4.5 X.509-1.5.4 PLUTO_SENDS_VENDORID PLUTO_USES_KEYRR]
Mar 2 03:29:18 fatpipe pluto[5473]: packet from 46.0.0.2:500: received Vendor ID payload [Dead Peer Detection]
Mar 2 03:29:18 fatpipe pluto[5473]: "aaa" #4: responding to Main Mode
Mar 2 03:29:18 fatpipe pluto[5473]: "aaa" #4: Can't authenticate: no preshared key found for `44.0.0.2' and `46.0.0.2'. Attribute OAKLEY_AUTHENTICATION_METHOD
Mar 2 03:29:18 fatpipe pluto[5473]: "aaa" #4: no acceptable Oakley Transform
Mar 2 03:29:18 fatpipe pluto[5473]: "aaa" #4: sending notification NO_PROPOSAL_CHOSEN to 46.0.0.2:500

I have host name in both ipsec.conf and ipsec.secert file. It was working for RSA signature method. And PSK also working when host name contains only one IP. Is PSK support multiple IP for single host name(it is not dynamic). Please help me.

Thanks,
Indira.
 
Reply With Quote
 
 
 
Reply

Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
HSRP: virtual IPs without real IPs? Martijn Lievaart Cisco 4 02-15-2012 08:16 AM
Is it possible to set a ddns hostname to access a name-based virtual host? Hongyi Zhao HTML 1 02-20-2009 12:10 PM
Mutiple external IPs on single interface Kevin Coles Cisco 5 01-10-2006 04:46 PM
RMI: take ip/hostname what client was using and give it back as aremote objects hostname AWieminer Java 0 07-12-2005 08:05 PM
Checking IP addresses against lists of IPs, partial IPs, and netmasks. Adam Funk Perl Misc 12 07-05-2005 01:49 PM



Advertisments
 



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57