Can someone please help me with this "unable to allocate SPIs from kernel" message?
On Tue, Aug 18, 2009 at 3:34 PM, Deva Pandian<deva.pand...@gmail.com> wrote: > Hi, I am an ipsec beginner. I installed strongswan 4.3.3 on my > FC10/FC11 machines and tried to setup a host-host tunnel. But I get > the following error. Googling it and searching for it in strongswan > wiki didn't give any results. > > [r...@localhost ~]# ipsec restart > Stopping strongSwan IPsec... > Starting strongSwan 4.3.3 IPsec [starter]... > [r...@localhost ~]# ipsec up host-host > initiating IKE_SA host-host[1] to 10.40.128.14 > generating IKE_SA_INIT request 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP) ] > sending packet: from 10.47.20.20[500] to 10.40.128.14[500] > received packet: from 10.40.128.14[500] to 10.47.20.20[500] > parsed IKE_SA_INIT response 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP) > N(MULT_AUTH) ] > authentication of 'moon.strongswan.org' (myself) with pre-shared key > establishing CHILD_SA host-host > unable to allocate SPIs from kernel > > Can someone please help me. I tried rebuilding the kernel with the > ipsec options mentioned in the doc. But I still see the error. > > Thanks. > _______________________________________________ Users mailing list Users@lists.strongswan.org https://lists.strongswan.org/mailman/listinfo/users