On Fri, 9 May 2008 12:31:41 -0700 "David Rees" <[EMAIL PROTECTED]> wrote:
> On Fri, May 9, 2008 at 2:01 AM, Jure Pečar <[EMAIL PROTECTED]> wrote: > > May 9 10:30:20 racoon: [Unknown Gateway/Dynamic]: ERROR: such policy does > > not already exist: "192.168.1.0/24[0] 192.168.111.0/24[0] proto=any dir=in" > > May 9 10:30:20 racoon: [Unknown Gateway/Dynamic]: ERROR: such policy does > > not already exist: "192.168.111.0/24[0] 192.168.1.0/24[0] proto=any dir=out" > > Oops. Loks like you have some sort of VPN definition error here. Are > you sure that the local/remote nets match on both ends? Also make sure > that you do not have any duplicate local/remote nets across all VPN > connectons defined on each firewall. This is what makes it interesting to me - office2 has no tunnels defined, just "allow mobile clients" enabled and all settings underneath as on office1. No subnets overlap, so things should "just work". I'll try to set up a tunnel at office2 back to office1 and see what I get. -- Jure Pečar http://jure.pecar.org --------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]
