Hi,  I am an ipsec beginner.  I installed strongswan 4.3.3 on my
FC10/FC11 machines and tried to setup a host-host tunnel.  But I get
the following error.  Googling it and searching for it in strongswan
wiki didn't give any results.

[r...@localhost ~]# ipsec restart
Stopping strongSwan IPsec...
Starting strongSwan 4.3.3 IPsec [starter]...
[r...@localhost ~]# ipsec up host-host
initiating IKE_SA host-host[1] to 10.40.128.14
generating IKE_SA_INIT request 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP) ]
sending packet: from 10.47.20.20[500] to 10.40.128.14[500]
received packet: from 10.40.128.14[500] to 10.47.20.20[500]
parsed IKE_SA_INIT response 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP)
N(MULT_AUTH) ]
authentication of 'moon.strongswan.org' (myself) with pre-shared key
establishing CHILD_SA host-host
unable to allocate SPIs from kernel

Can someone please help me.  I tried rebuilding the kernel with the
ipsec options mentioned in the doc.  But I still see the error.

Thanks.
_______________________________________________
Users mailing list
Users@lists.strongswan.org
https://lists.strongswan.org/mailman/listinfo/users

Reply via email to