Subject: Re: racoon: can't start the quick mode
To: None <tech-net@netbsd.org>
From: Jan Schaumann <jschauma@netmeister.org>
List: tech-net
Date: 09/04/2005 12:37:08
--DBIVS5p969aUjpLe
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

Thor Lancelot Simon <tls@rek.tjls.com> wrote:
> On Sat, Sep 03, 2005 at 11:15:16PM -0400, Jan Schaumann wrote:
> >
> > I have IPSec set up to encrypt syslog connections between my clients and
> > the logging hosts.  This works just dandy.  However, on the server, I
> > get a ton of error messages in my logs from racoon:
> >=20
> > Sep  3 23:11:54 amstel racoon: ERROR: isakmp.c:505: can't start the
> >  quick mode, there is no ISAKMP-SA,
> >  1b51ec5c83aec49d:ee081d4d91487dcd:000079c7=20
>=20
> Are you using aggressive mode?  Does the message go away if you use
> main mode only?

Yes and no.

I have

 exchange_mode aggressive,main,base;

but changing this doesn't seem to have any effect in any way.

-Jan

--=20
chown -R us:enemy your_base

--DBIVS5p969aUjpLe
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (NetBSD)

iD8DBQFDGyK0fFtkr68iakwRAjnWAJ9O7PLrI6zfD5Cg8jPmhFM9C2zV+QCbBPEc
Db8AwjNB5NafFdEqOeiqTMg=
=npGn
-----END PGP SIGNATURE-----

--DBIVS5p969aUjpLe--