[strongSwan] ANNOUNCE: strongswan-5.0.2rc1 released

Tobias Brunner tobias at strongswan.org
Mon Jan 21 12:08:56 CET 2013


Hi André,

> I cannot establish an VPN. I tested it with an Galaxy S3 and get an 
> timeout on the client.

Did it work with earlier strongSwan versions?

> Jan 21 11:38:29 rossini charon: 15[ENC] parsed TRANSACTION request 2246836868 [ HASH CP ]
> Jan 21 11:38:29 rossini charon: 15[IKE] peer requested virtual IP %any
> Jan 21 11:38:29 rossini charon: 15[CFG] acquired existing lease for address 192.168.101.3 in pool 'vpnclients'
> Jan 21 11:38:29 rossini charon: 15[IKE] assigning virtual IP 192.168.101.3 to peer 'avalentin'
> Jan 21 11:38:29 rossini charon: 15[CFG] sending UNITY_SPLIT_INCLUDE: 0.0.0.0/0
> Jan 21 11:38:29 rossini charon: 15[CFG] sending RADIUS Accounting-Request to server 'primary'
> Jan 21 11:38:29 rossini charon: 15[CFG] received RADIUS Accounting-Response from server 'primary'
> Jan 21 11:38:29 rossini charon: 15[ENC] generating TRANSACTION response 2246836868 [ HASH CP ]
> Jan 21 11:38:29 rossini charon: 15[NET] sending packet: from X.X.X.69[4500] to 217.255.60.212[4500] (172 bytes)
> .. Nothing happens ..

>From the responder's point of view everything is done at this point.
The Android client only establishes a quick mode SA when traffic demands
it (see my response here [1]).  Could you try getting your hands on the
client logs?

Regards,
Tobias

http://serverfault.com/questions/444053/ipsec-tunnel-to-android-device-not-created-even-though-there-is-an-ike-sa/444148#444148




More information about the Users mailing list