Re: OpenBSD 4.2 isakmp/ipsec defaults

2007-12-07 Thread visc
Wow, excellent help thank you. That's helped me track down some other problems as well. I have success! And in the interests of full disclosure... I, um, was missing a character in the PSK. [shame and embarrasment] That's what you get when you generate a nice 63 character key and have to

Re: OpenBSD 4.2 isakmp/ipsec defaults

2007-12-07 Thread Stuart Henderson
On 2007/12/07 00:53, visc wrote: > I'm going to toss out some generalities here before I resort to posting > debugs from isakmpd because I think I'm only missing one critical factor > in Phase2. You can usually identify the problem more easily by looking at packet traces, than by looking at logs

OpenBSD 4.2 isakmp/ipsec defaults

2007-12-07 Thread visc
Greetings, I am trying to establish ipsec between a 4.2-current box and a Cisco 3005 concentrator, without going to manual keying or setting up isakmpd.conf or .policy. I have come across a few folks who have been successful using 4.0 and 4.1 with isakmpd.conf or isakmpd.policy, but my un