<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Cannot create a tunnel with a gateway]]></title><description><![CDATA[<p dir="auto">Hello,</p>
<p dir="auto">I just deleted the not working tunnel config on my roadwarrior router and now the new config wont accept a remote gateway setting.</p>
<p dir="auto">I configured the following settings:</p>
<p dir="auto">Interface: WAN<br />
Local Subnet: LAN Subnet<br />
Remote Subnet: 192.168.1.0/24<br />
Remote Gateway: IP.of.my.OPT1 Interface</p>
<p dir="auto">Phase1 Settings:<br />
My Identifier: User FQDN / info@my.domain<br />
Lifetime: 1200<br />
Preshared Key: copy+paste from my static configuration</p>
<p dir="auto">Phase2 Settings:<br />
Lifetime: 1200</p>
<p dir="auto">And an IP address on my local subnet to ping to.</p>
<p dir="auto">I press the save button and what happens? My tunnel setup is created, but the remote gateway information is lost!<br />
When I look into the system log into IPSec logs I see the following two lines:</p>
<p dir="auto">Apr 19 15:33:41 racoon: ERROR: fatal parse failure (1 errors)<br />
Apr 19 15:33:41 racoon: ERROR: /var/etc/racoon.conf:5: "{" parse error</p>
<p dir="auto">Looking at the racoon.conf it does not look very wrong to me, but ok, I am new to this</p>
<blockquote>
<p dir="auto">path pre_shared_key "/var/etc/psk.txt";</p>
<p dir="auto">path certificate  "/var/etc";</p>
<p dir="auto">remote  {<br />
        exchange_mode aggressive;<br />
        my_identifier user_fqdn "info@my.domain";</p>
<p dir="auto">peers_identifier address ;<br />
        initial_contact on;<br />
        support_proxy on;<br />
        proposal_check obey;</p>
<p dir="auto">proposal {<br />
                encryption_algorithm 3des;<br />
                hash_algorithm sha1;<br />
                authentication_method pre_shared_key;<br />
                dh_group 2;<br />
                lifetime time 1200 secs;<br />
        }<br />
        lifetime time 1200 secs;<br />
}</p>
</blockquote>
<p dir="auto">Next try:<br />
deleted the tunnel, saved,<br />
disabled IPSec, saved<br />
enabled IPSec, saved<br />
created the tunnel, saved</p>
<p dir="auto">Result: again, no gateway</p>
<p dir="auto">Can I delete the racoon.conf and it will be created from scratch?</p>
<p dir="auto">regards,<br />
Comradin</p>
]]></description><link>https://forum.netgate.com/topic/4236/cannot-create-a-tunnel-with-a-gateway</link><generator>RSS for Node</generator><lastBuildDate>Fri, 10 Apr 2026 12:46:02 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/4236.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 19 Apr 2007 13:47:09 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Cannot create a tunnel with a gateway on Fri, 20 Apr 2007 19:00:57 GMT]]></title><description><![CDATA[<p dir="auto">Ok,</p>
<p dir="auto">now Im really lost. I did my setup with the help of this tutorial two or three times now and I do not see any differences between the tutorial and my two machines.</p>
<p dir="auto">Only difference is that my static machine has two interfaces with WAN being the dynamic interface with PPPoE and OPT1 being the static interface like I wrote in my other thread where I was told to update my static box to the latest snapshot because of IPSec on OPT1 not being possible.</p>
]]></description><link>https://forum.netgate.com/post/153366</link><guid isPermaLink="true">https://forum.netgate.com/post/153366</guid><dc:creator><![CDATA[Comradin]]></dc:creator><pubDate>Fri, 20 Apr 2007 19:00:57 GMT</pubDate></item><item><title><![CDATA[Reply to Cannot create a tunnel with a gateway on Thu, 19 Apr 2007 14:33:43 GMT]]></title><description><![CDATA[<p dir="auto">It won't work that way for roadwarriors. Have a look at http://pfsense.org/mirror.php?section=tutorials/mobile_ipsec/ how to configure mobile clients.</p>
]]></description><link>https://forum.netgate.com/post/153287</link><guid isPermaLink="true">https://forum.netgate.com/post/153287</guid><dc:creator><![CDATA[hoba]]></dc:creator><pubDate>Thu, 19 Apr 2007 14:33:43 GMT</pubDate></item></channel></rss>