<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[IPSEC-VPN &lt;-&gt; openswan (Astaro) without chance]]></title><description><![CDATA[<p dir="auto">Hi,<br />
I hope someone have an idea.<br />
On both sides the same parameters and nevertheless are not connected the tunnels.<br />
pfsens (latest snapshot), Astaro (V7) last version.</p>
<p dir="auto">Messages pfsense:<br />
Jul 4 16:56:26    racoon: ERROR: can't start the quick mode, there is no ISAKMP-SA, 9d9927ce02ffe45f:02bbb0b4ad81289c:00006e40<br />
Jul 4 16:56:57    last message repeated 2 times<br />
Jul 4 16:57:03    racoon: INFO: unsupported PF_KEY message REGISTER<br />
Jul 4 16:57:03    racoon: INFO: fe80::1%lo0[500] used as isakmp port (fd=26)<br />
Jul 4 16:57:03    racoon: INFO: ::1[500] used as isakmp port (fd=27)<br />
Jul 4 16:57:03    racoon: INFO: 127.0.0.1[500] used as isakmp port (fd=28)<br />
Jul 4 16:57:03    racoon: INFO: fe80::20c:29ff:fedb:18e3%le1[500] used as isakmp port (fd=29)<br />
Jul 4 16:57:03    racoon: INFO: 217.6.34.xx[500] used as isakmp port (fd=30)<br />
Jul 4 16:57:03    racoon: INFO: fe80::20c:29ff:fedb:18d9%le0[500] used as isakmp port (fd=31)<br />
Jul 4 16:57:03    racoon: INFO: 192.168.1.44[500] used as isakmp port (fd=32)<br />
Jul 4 16:57:36    racoon: ERROR: can't start the quick mode, there is no ISAKMP-SA, 9d9927ce02ffe45f:02bbb0b4ad81289c:0000129e<br />
Jul 4 16:58:07    last message repeated 2 times<br />
Jul 4 16:58:47    racoon: ERROR: can't start the quick mode, there is no ISAKMP-SA, 9d9927ce02ffe45f:02bbb0b4ad81289c:0000c909<br />
Jul 4 16:59:17    last message repeated 2 times<br />
Jul 4 16:59:57    racoon: ERROR: can't start the quick mode, there is no ISAKMP-SA, 9d9927ce02ffe45f:02bbb0b4ad81289c:00000802<br />
Jul 4 17:00:27    last message repeated 2 times<br />
Jul 4 17:01:07    racoon: ERROR: can't start the quick mode, there is no ISAKMP-SA, 9d9927ce02ffe45f:02bbb0b4ad81289c:00004b67<br />
Jul 4 17:01:36    last message repeated 2 times<br />
Jul 4 17:02:17    racoon: ERROR: can't start the quick mode, there is no ISAKMP-SA, 9d9927ce02ffe45f:02bbb0b4ad81289c:000019c1<br />
Jul 4 17:02:47    last message repeated 2 times<br />
Jul 4 17:03:27    racoon: ERROR: can't start the quick mode, there is no ISAKMP-SA, 9d9927ce02ffe45f:02bbb0b4ad81289c:0000823d<br />
Jul 4 17:03:56    last message repeated 2 times<br />
Jul 4 17:04:37    racoon: ERROR: can't start the quick mode, there is no ISAKMP-SA, 9d9927ce02ffe45f:02bbb0b4ad81289c:0000247f<br />
Jul 4 17:05:07    last message repeated 2 times<br />
Jul 4 17:05:47    racoon: ERROR: can't start the quick mode, there is no ISAKMP-SA, 9d9927ce02ffe45f:02bbb0b4ad81289c:0000fb63<br />
Jul 4 17:06:17    last message repeated 2 times<br />
Jul 4 17:06:57    racoon: ERROR: can't start the quick mode, there is no ISAKMP-SA, 9d9927ce02ffe45f:02bbb0b4ad81289c:000086fc<br />
Jul 4 17:07:27    last message repeated 2 times<br />
Jul 4 17:08:07    racoon: ERROR: can't start the quick mode, there is no ISAKMP-SA, 9d9927ce02ffe45f:02bbb0b4ad81289c:0000fde9<br />
Jul 4 17:08:37    last message repeated 2 times<br />
Jul 4 17:09:17    racoon: ERROR: can't start the quick mode, there is no ISAKMP-SA, 9d9927ce02ffe45f:02bbb0b4ad81289c:0000e126<br />
Jul 4 17:09:47    last message repeated 2 times<br />
Jul 4 17:10:27    racoon: ERROR: can't start the quick mode, there is no ISAKMP-SA, 9d9927ce02ffe45f:02bbb0b4ad81289c:00008543<br />
Jul 4 17:10:57    last message repeated 2 times<br />
Jul 4 17:11:37    racoon: ERROR: can't start the quick mode, there is no ISAKMP-SA, 9d9927ce02ffe45f:02bbb0b4ad81289c:0000b670<br />
Jul 4 17:12:07    last message repeated 2 times</p>
<p dir="auto">Astaro:<br />
2007:07:04-16:47:07 (none) pluto[3864]: "S_REF_hovtTdsxWV_0" #528: received Vendor ID payload [Dead Peer Detection]<br />
2007:07:04-16:47:07 (none) pluto[3864]: "S_REF_hovtTdsxWV_0" #528: Peer ID is ID_IPV4_ADDR: '217.6.34.xx'<br />
2007:07:04-16:47:07 (none) pluto[3864]: "S_REF_hovtTdsxWV_0" #528: ISAKMP SA established<br />
2007:07:04-16:47:07 (none) pluto[3864]: "S_REF_hovtTdsxWV_0" #529: initiating Quick Mode PSK+ENCRYPT+TUNNEL+PFS+UP {using isakmp#528}<br />
2007:07:04-16:47:07 (none) pluto[3864]: "S_REF_hovtTdsxWV_0" #528: ignoring informational payload, type IPSEC_INITIAL_CONTACT<br />
2007:07:04-16:47:17 (none) pluto[3864]: packet from 217.6.34.xx:500: ignoring informational payload, type INVALID_COOKIE<br />
2007:07:04-16:47:37 (none) pluto[3864]: packet from 217.6.34.xx:500: ignoring informational payload, type INVALID_COOKIE<br />
2007:07:04-16:48:17 (none) pluto[3864]: "S_REF_hovtTdsxWV_0" #529: max number of retransmissions (2) reached STATE_QUICK_I1.  No acceptable response to our first Quick Mode message: perhaps peer likes no proposal<br />
2007:07:04-16:48:17 (none) pluto[3864]: "S_REF_hovtTdsxWV_0" #529: starting keying attempt 2 of an unlimited number<br />
2007:07:04-16:48:17 (none) pluto[3864]: "S_REF_hovtTdsxWV_0" #530: initiating Quick Mode PSK+ENCRYPT+TUNNEL+PFS+UP to replace #529 {using isakmp#528}<br />
2007:07:04-16:48:17 (none) pluto[3864]: packet from 217.6.34.xx:500: ignoring informational payload, type INVALID_COOKIE<br />
2007:07:04-16:48:27 (none) pluto[3864]: packet from 217.6.34.xx:500: ignoring informational payload, type INVALID_COOKIE<br />
2007:07:04-16:48:47 (none) pluto[3864]: packet from 217.6.34.xx:500: ignoring informational payload, type INVALID_COOKIE</p>
<p dir="auto">Possibly an idea?</p>
<p dir="auto">Thanks for each assistance.</p>
<p dir="auto">Stefan</p>
]]></description><link>https://forum.netgate.com/topic/5102/ipsec-vpn-openswan-astaro-without-chance</link><generator>RSS for Node</generator><lastBuildDate>Tue, 10 Mar 2026 10:24:41 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/5102.rss" rel="self" type="application/rss+xml"/><pubDate>Wed, 04 Jul 2007 15:31:43 GMT</pubDate><ttl>60</ttl></channel></rss>