Subject: Re: racoon: can't start the quick mode
To: None <tech-net@netbsd.org>
From: Jan Schaumann <jschauma@netmeister.org>
List: tech-net
Date: 09/04/2005 12:37:08
--DBIVS5p969aUjpLe
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable
Thor Lancelot Simon <tls@rek.tjls.com> wrote:
> On Sat, Sep 03, 2005 at 11:15:16PM -0400, Jan Schaumann wrote:
> >
> > I have IPSec set up to encrypt syslog connections between my clients and
> > the logging hosts. This works just dandy. However, on the server, I
> > get a ton of error messages in my logs from racoon:
> >=20
> > Sep 3 23:11:54 amstel racoon: ERROR: isakmp.c:505: can't start the
> > quick mode, there is no ISAKMP-SA,
> > 1b51ec5c83aec49d:ee081d4d91487dcd:000079c7=20
>=20
> Are you using aggressive mode? Does the message go away if you use
> main mode only?
Yes and no.
I have
exchange_mode aggressive,main,base;
but changing this doesn't seem to have any effect in any way.
-Jan
--=20
chown -R us:enemy your_base
--DBIVS5p969aUjpLe
Content-Type: application/pgp-signature
Content-Disposition: inline
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (NetBSD)
iD8DBQFDGyK0fFtkr68iakwRAjnWAJ9O7PLrI6zfD5Cg8jPmhFM9C2zV+QCbBPEc
Db8AwjNB5NafFdEqOeiqTMg=
=npGn
-----END PGP SIGNATURE-----
--DBIVS5p969aUjpLe--