[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: ISAKMPD



Hi Alex,
moal wrote,

> Dear OpenBSD!
> Excuse me , please, for distrurbing!
> Since some weeks I'm trying to build a small VPN with x509 Certificates. I
> have Problems with
> ISAKMPD Protocol. I tryed also to implement the whole strory without X509,
> just with "pre-shared". Starting isakmpd -d -DA=99 I got the same
> error(see Attachments). So, I get slowly a feeling that I'm running in
> circles...
> 
> I'll be very thankful, if somebody could give me a small advice, what the
> problem could be!
> What does this message means: "udp_create: 10.128.0.21:500 must exist as a
> listener too" ?

> 153331.281075 Default udp_create: 10.128.0.21:500 must exist as a listener
> too
> 153331.281134 Default exchange_establish: transport "udp" for peer "moo"
> could not be created

Show us your isakmpd.conf. 
What is the value of Listen-on?
Do you block UDP port 500 with pf?

bye
  Waldemar


-- 
8485 D0CE 2743 656E 867C  5C93 0317 AFD8 BE21 BD90