IPsec mezi FreeBSD a Win2k

Petr Holub hopet at ics.muni.cz
Tue Jul 2 15:30:47 CEST 2002


Dobry den,

zkuste se podivat na
http://www.cesnet.cz/doc/techzpravy/2002/ipsec/
a zde zminene dokumenty. Pokud to nezabere, tak se na to
muzem podivat podrobne.

Pomerne dulezite je

How to Configure IPSec Tunneling in Windows 2000,
http://support.microsoft.com/support/kb/articles/q252/7/35.asp

- jak si zpravne zkonfigurovat ty Windowse.

Petr

================================================================
                            Petr Holub
CESNET z.s.p.o.                       Supercomputing Center Brno
Zikova 4                             Institute of Compt. Science
160 00 Praha 6, CZ                            Masaryk University
Czech Republic                     Botanicka 68a, 60200 Brno, CZ 
e-mail: Petr.Holub at cesnet.cz              phone: +420-5-41512213
                                       e-mail: hopet at ics.muni.cz  
 

> -----Original Message-----
> From: owner-users-l at freebsd.cz [mailto:owner-users-l at freebsd.cz]On
> Behalf Of Prib Pavel
> Sent: Friday, June 28, 2002 8:32 AM
> To: users-l at freebsd.cz
> Subject: IPsec mezi FreeBSD a Win2k
> 
> 
> Preji pekny den.
> 
> Mam problem pri vytvareni spojeni mezi FreeBSD a Win2k.
> Jako zaklad pro experimentovani jsem pouzil 
> 
> http://www.wiretapped.net/~fyre/ipsec/
> http://www.sigsegv.cx/FreeBSD-WIN2K-IPSEC-HOWTO.html
> 
> Import klicu z FreeBSD do Win2k probehl OK.
>  
> A po pingu mi na FreeBSD vybehne od racoonu nasledujici chyba:
> 
> Foreground mode.
> 2002-06-28 08:23:27: INFO: main.c:168:main():
> 2002-06-28 08:23:27: INFO: main.c:170:main(): @r       ouzz uzzhZ
> 2002-06-28 08:23:27: INFO: main.c:171:main(): @(#)This product linked
> (http://www.openssl.org/)
> 2002-06-28 08:23:27: INFO: isakmp.c:1357:isakmp_open():  used as
> isakmp port (fd=-1077937456)
> 2002-06-28 08:23:27: INFO: isakmp.c:1357:isakmp_open():  used as
> isakmp port (fd=9)
> 2002-06-28 08:23:27: INFO: isakmp.c:1357:isakmp_open():  used as
> isakmp port (fd=9)
> 2002-06-28 08:23:43: INFO: isakmp.c:1681:isakmp_post_acquire():
> IPsec-SA request for @ER
> z queued due to no phase1 found.
> 2002-06-28 08:23:43: INFO: isakmp.c:795:isakmp_ph1begin_i(): initiate
> new phase 1 negotiation: `n      <=>192.168.51.49[500]
> 2002-06-28 08:23:43: INFO: isakmp.c:800:isakmp_ph1begin_i(): begin
> mode.
> 2002-06-28 08:23:43: INFO: vendorid.c:128:check_vendorid(): received
> Vendor IDEl
> 2002-06-28 08:23:44: ERROR: oakley.c:1532:oakley_getsign(): failed to
> get private key.
> 2002-06-28 08:23:44: ERROR: isakmp.c:623:ph1_main(): failed to process
> packet.
> 2002-06-28 08:23:44: ERROR: isakmp.c:437:isakmp_main(): phase1
> negotiation failed.
> 
> Kde muze byt chyba ? 
> 
> 
>      Diky.
> 
>         Pavel
> 



More information about the Users-l mailing list