Re: [strongSwan] DPD [lack of] interoperability between strongswan and Cisco IOS

2013-06-19 Thread Olivier PELERIN
Martin, For what ever reason on my old system, it seems after installing the library, something bad was happening. I've tested your GIT branch from my new vmware host. It works properly. I can see DPD's received on the IOS Cisco device. It's good to be committed I think. manowar strongswan

Re: [strongSwan] DPD [lack of] interoperability between strongswan and Cisco IOS

2013-06-11 Thread Olivier PELERIN
of] interoperability between strongswan and Cisco IOS From: mar...@strongswan.org To: olivier_pele...@hotmail.com CC: users@lists.strongswan.org Date: Tue, 11 Jun 2013 12:01:32 +0200 the /usr/sbin/ipsec file is indeed the new one. That's just a simple wrapper script to control

Re: [strongSwan] DPD [lack of] interoperability between strongswan and Cisco IOS

2013-06-10 Thread Olivier PELERIN
... * ERROR: net-misc/strongswan- failed (configure phase): * no configure script found Regards, Olivier Subject: Re: [strongSwan] DPD [lack of] interoperability between strongswan and Cisco IOS From: mar...@strongswan.org To: olivier_pele...@hotmail.com CC: users@lists.strongswan.org Date

Re: [strongSwan] DPD [lack of] interoperability between strongswan and Cisco IOS

2013-06-10 Thread Olivier PELERIN
Nevermind... I've found the autogen.sh... From: olivier_pele...@hotmail.com To: mar...@strongswan.org Date: Mon, 10 Jun 2013 11:05:57 +0200 CC: users@lists.strongswan.org Subject: Re: [strongSwan] DPD [lack of] interoperability between strongswan and Cisco IOS Hello Martin, In order

Re: [strongSwan] DPD [lack of] interoperability between strongswan and Cisco IOS

2013-06-10 Thread Olivier PELERIN
Martin, I've compiled the image and I'm still facing the same issue. I've picked up the branch * http://archives.gentoo.org/gentoo-dev/msg_b7ba363cae580845819ae3501fb157e9.xml * GIT update -- *repository: git://git.strongswan.org/strongswan.git *at the commit:

Re: [strongSwan] DPD [lack of] interoperability between strongswan and Cisco IOS

2013-06-10 Thread Olivier PELERIN
[lack of] interoperability between strongswan and Cisco IOS From: mar...@strongswan.org To: olivier_pele...@hotmail.com CC: users@lists.strongswan.org Date: Mon, 10 Jun 2013 14:48:17 +0200 parsed ID_PROT response 0 [ KE No V V V V NAT-D NAT-D ] generating ID_PROT request 0 [ ID HASH

Re: [strongSwan] DPD [lack of] interoperability between strongswan and Cisco IOS

2013-06-03 Thread Olivier PELERIN
Hello Martin, Yeah that would be awesome. Cisco IOS keep that task alive and from that side, it can sends DPD. That would be nice if StrongSwan would do the same. BTW is there any workaround here? Subject: Re: [strongSwan] DPD [lack of] interoperability between strongswan and Cisco IOS

Re: [strongSwan] DPD [lack of] interoperability between strongswan and Cisco IOS

2013-05-31 Thread Martin Willi
Hi Olivier, Strongswan Sends his Vendor ID in Main Mode 1 - IOS sends his vendor ID in Main Mode 4 but Strongswan does not seems to recognize it. Yes, we currently process vendor ID payloads in the first message only. Seems that this is insufficient for some implementations. When I find some

Re: [strongSwan] DPD [lack of] interoperability between strongswan and Cisco IOS

2013-05-30 Thread Olivier PELERIN
2013 21:15:15 +0200 Subject: [strongSwan] DPD [lack of] interoperability between strongswan and Cisco IOS Hello guys, While playing [ikev1] with Strongswan and Cisco IOS, I've seen the following wierd behavior: Strongswan Sends his Vendor ID in Main Mode 1 - IOS sends his vendor ID

[strongSwan] DPD [lack of] interoperability between strongswan and Cisco IOS

2013-05-29 Thread Olivier PELERIN
Hello guys, While playing [ikev1] with Strongswan and Cisco IOS, I've seen the following wierd behavior: Strongswan Sends his Vendor ID in Main Mode 1 - IOS sends his vendor ID in Main Mode 4 but Strongswan does not seems to recognize it. I had a look at RFC 3706 / 2407 / 2408 and I dont see