Hi,

> Vpnc (in all versions 0.5.3r512-1 and above) fails to connect to the Cisco 
> ASA 5520 Cluster with software version 8.3. This does not happen with 
> versions pre-r512, in other words everything works fine up to 0.5.3r449-3.

are you comparing squeeze and wheezy or really just different versions
of the vpnc package (as opposed to different versions of both vpnc and
network-manager-vpnc)?

> This is the relevant syslog excerpt:
> 
> Dec 26 16:51:57 erde NetworkManager[2965]: <info> Starting VPN service 
> 'vpnc'...
> Dec 26 16:51:57 erde NetworkManager[2965]: <info> VPN service 'vpnc' started 
> (org.freedesktop.NetworkManager.vpnc), PID 20052
> Dec 26 16:51:57 erde NetworkManager[2965]: <info> VPN service 'vpnc' 
> appeared; activating connections
> Dec 26 16:51:57 erde NetworkManager[2965]: <info> VPN plugin state changed: 
> starting (3)
...
> Dec 26 16:51:59 erde NetworkManager[2965]: <info> VPN plugin state changed: 
> started (4)

and 30s later:

> Dec 26 16:52:28 erde avahi-daemon[2903]: Withdrawing workstation service for 
> tun0.
> Dec 26 16:52:28 erde NetworkManager[2965]:    SCPlugin-Ifupdown: devices 
> removed (path: /sys/devices/virtual/net/tun0, iface: tun0)
> Dec 26 16:52:28 erde NetworkManager[2965]: <warn> VPN plugin failed: 1
> Dec 26 16:52:28 erde NetworkManager[2965]: <info> VPN plugin state changed: 
> stopped (6)
> Dec 26 16:52:28 erde NetworkManager[2965]: <info> VPN plugin state change 
> reason: 0
...
> Dec 26 16:52:29 erde NetworkManager[2965]: <warn> error disconnecting VPN: 
> Could not process the request because no VPN connection was active.
> Dec 26 16:52:29 erde NetworkManager[2965]: <warn> (51) failed to find 
> interface name for index
> Dec 26 16:52:29 erde NetworkManager[2965]: nm_system_iface_flush_routes: 
> assertion `iface != NULL' failed
> Dec 26 16:52:29 erde NetworkManager[2965]: <warn> (51) failed to find 
> interface name for index
...
> Dec 26 16:52:33 erde NetworkManager[2965]: <info> VPN service 'vpnc' 
> disappeared


This looks as though vpnc makes a connection just fine, and then after
30s the tun device just disappears, but NetworkManager doesn't tell us
much and vpnc doesn't log anything to syslog.

To further debug this problem, could you please establish your vpn from
the command line, calling vpnc directly without using the NetworkManager
plugin but making use of the --debug 1/2/3 switch? And if the error
message isn't obvious, could you do the same with r449-3 and look for
differences? (Please post the '--debug 3' output of both a successful
r449-3 and a failing r512-2 connection if you want me to go hunting for
the error.)

Florian


-- 
To UNSUBSCRIBE, email to [email protected]
with a subject of "unsubscribe". Trouble? Contact [email protected]

Reply via email to