Scott & All,
Not really sure how to address this ticket back into the CVS Track
system, but I appended my findings and from my prospective this one
is a resolved issue. Sorry if this isn't the right place, but no
login to CVS Track.
Thanks again for the quick fix guys!!!!
----- Original Message -----
Subject: [pfSense tracker] Ticket 1378 updated by anonymous
From: [EMAIL PROTECTED]
To: [EMAIL PROTECTED]
CC: [EMAIL PROTECTED]
Date: 12-07-2007 4:08 pm
TICKET #1378[1] WAS UPDATED BY ANONYMOUS.
Title: IPSec broken
Type: bug
Assigned to: unassigned[2]
Status: new
Description:
I have been running 1.2-BETA-2 since early last week and all seems
great. I just upgraded two test boxes (with pre-configured & working
IPSec tunnels) to the latest 1.2-BETA-2 SNAP and it severely broke
IPSec. racoon.conf: path pre_shared_key "/var/etc/psk.txt"; path
certificate "/var/etc"; remote 63.63.63.63{ exchange_mode
main; my_identifier address "63.63.63.64";
peers_identifier address 63.63.63.63; initial_contact on;
support_proxy on; proposal_check obey; proposal {
encryption_algorithm rijndael 256;
hash_algorithm sha1; authentication_method
pre_shared_key; dh_group 5; lifetime
time 28800 secs; } lifetime time 28800 secs; }
sainfo address 192.168.168.0/24 any address 10.10.10.0/24any {
encryption_algorithm rijndael 256; authentication_algorithm
hmac_sha1; compression_algorithm deflate; pfs_group
5; lifetime time 3600 secs; } I have recently switched my
test tunnels to rijndael 256 w/ SHA1 .... everythings works great
when I downgraded back to the original 1.2-BETA-2.
Remarks:
Generated by cvstrac-notify.pl at Thu, 07 12 16:08
View Ticket[3]
Links:
------
[1] HTTP://CVSTRAC.PFSENSE.COM/TKTVIEW?TN=1378
[2] mailto:[EMAIL PROTECTED]
[3] http://cvstrac.pfsense.com/tktview?tn=1378