<div dir="ltr"><div><div><div><div><div><div><div>Hi List,<br><br></div>I have created a
tunnel between two machine M1 and M2. Tunnel seems to be created
successfully and I am also able to ping between two endpoints.
Configuration at both ends is as follows:<br>
<br></div>M1 (Octean):<br></div>IKEv1<br></div>Ipsec version:<br> Linux strongSwan U4.5.3/K2.6.32.60-1-lfs130202-ci1-fct<br><br></div><div>Output:<br><br>root@172:~ >ipsec status<br>000 "conn1": <a href="http://10.10.10.0/24===10.10.10.8%5BCN=RY110409750.nokiasiemensnetworks.com" target="_blank">10.10.10.0/24===10.10.10.8[CN=RY110409750.nokiasiemensnetworks.com</a>, O=Nokia Siemens Networks]...10.10.10.9[10.10.10.9]===<a href="http://10.10.10.0/24" target="_blank">10.10.10.0/24</a>; erouted; eroute owner: #2<br>
000 "conn1": newest ISAKMP SA: #1; newest IPsec SA: #2;<br>000<br>000 #2: "conn1" STATE_QUICK_I2 (sent QI2, IPsec SA established); EVENT_SA_REPLACE in 12280s; newest IPSEC; eroute owner<br>000 #2: "conn1" <a href="mailto:esp.ca76e203@10.10.10.9" target="_blank">esp.ca76e203@10.10.10.9</a> (168 bytes, 11s ago) <a href="mailto:esp.c01555e3@10.10.10.8" target="_blank">esp.c01555e3@10.10.10.8</a> (168 bytes, 11s ago); tunnel<br>
000 #1: "conn1" STATE_MAIN_I4 (ISAKMP SA established); EVENT_SA_REPLACE in 10778s; newest ISAKMP<br>000<br>Security Associations (0 up, 0 connecting):<br></div><div> none<br></div><div><br></div>M2 (x86):<br></div>
IKEv1<br></div>Ipsec version:<br>Linux strongSwan U5.0.2/K2.6.18-128.el5<br><div><br></div><div>Output:<br></div><div><br>[root@localhost ~]# ipsec status<br>Security Associations (1 up, 0 connecting):<br> conn1[5]: ESTABLISHED 20 hours ago, 10.10.10.9[CN=<a href="http://ry110409750.nokiasiemensnetworks.com/" target="_blank">RY110409750.nokiasiemensnetworks.com</a>, O=Nokia Siemens Networks]...10.10.10.8[CN=<a href="http://ry110409750.nokiasiemensnetworks.com/" target="_blank">RY110409750.nokiasiemensnetworks.com</a>, O=Nokia Siemens Networks]<br>
conn1{1}: REKEYING, TUNNEL, expires in 85 minutes<br> conn1{1}: <a href="http://10.10.10.0/24" target="_blank">10.10.10.0/24</a> === <a href="http://10.10.10.0/24" target="_blank">10.10.10.0/24</a><br> conn1{1}: INSTALLED, TUNNEL, ESP SPIs: ca76e203_i c01555e3_o<br>
conn1{1}: <a href="http://10.10.10.0/24" target="_blank">10.10.10.0/24</a> === <a href="http://10.10.10.0/24" target="_blank">10.10.10.0/24</a><br></div><div><br></div><div><br></div><div>Why is there such a difference between two outputs?<br>
<br>
</div><div>Please help.<br clear="all"></div><br><br clear="all"><br>-- <br>Anuj Aggarwal <br><br> .''`. <br>: :Ⓐ : # apt-get install hakuna-matata<br>`. `'` <br> `-
</div>