[strongSwan] IKE algorithms

Philip Hunt huntp at huntp.com
Fri Jun 11 23:25:06 CEST 2010


Hi,

I'm trying to establish an IPSec tunnel to Amazon VPC.

I'm getting the following problem when doing an "ipsec statusall".

*000 "net-net":   IKE algorithms wanted: 7_128-2-2, *
*000 "net-net":   IKE algorithms found:  7_128-2_160-2, *


When doing an "ipsec listall", these are my registered IKE Hash Algorithms:

*000 List of registered IKE Hash Algorithms:*
*000  *
*000 #1     OAKLEY_MD5, hashsize: 128*
*000 #2     OAKLEY_SHA, hashsize: 160*
*000 #4     OAKLEY_SHA2_256, hashsize: 256*
*000 #5     OAKLEY_SHA2_384, hashsize: 384*
*000 #6     OAKLEY_SHA2_512, hashsize: 512*


I suspect the problem is that there is no hash algorithm registered that is
96bit hashsize.  Can anyone suggest how to load additional hash algorithms,
or identify what else this problem might be?



Thanks,
Phil

-- 
Philip Hunt
021 424 996
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20100612/c8c00c76/attachment.html>


More information about the Users mailing list