Can someone please help me with this "unable to allocate SPIs from
kernel" message?

On Tue, Aug 18, 2009 at 3:34 PM, Deva Pandian<deva.pand...@gmail.com> wrote:
> Hi,  I am an ipsec beginner.  I installed strongswan 4.3.3 on my
> FC10/FC11 machines and tried to setup a host-host tunnel.  But I get
> the following error.  Googling it and searching for it in strongswan
> wiki didn't give any results.
>
> [r...@localhost ~]# ipsec restart
> Stopping strongSwan IPsec...
> Starting strongSwan 4.3.3 IPsec [starter]...
> [r...@localhost ~]# ipsec up host-host
> initiating IKE_SA host-host[1] to 10.40.128.14
> generating IKE_SA_INIT request 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP) ]
> sending packet: from 10.47.20.20[500] to 10.40.128.14[500]
> received packet: from 10.40.128.14[500] to 10.47.20.20[500]
> parsed IKE_SA_INIT response 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP)
> N(MULT_AUTH) ]
> authentication of 'moon.strongswan.org' (myself) with pre-shared key
> establishing CHILD_SA host-host
> unable to allocate SPIs from kernel
>
> Can someone please help me.  I tried rebuilding the kernel with the
> ipsec options mentioned in the doc.  But I still see the error.
>
> Thanks.
>
_______________________________________________
Users mailing list
Users@lists.strongswan.org
https://lists.strongswan.org/mailman/listinfo/users

Reply via email to