﻿<?xml version='1.0' encoding='UTF-8'?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/"><channel><title>Релиб / Unix и Linux / Разное  / проблема c openswan - malformed payload in packet / Latest Posts</title><generator>InstantForum.NET v4.1.4</generator><description>Релиб</description><link>http://www.relib.com/forums/</link><webMaster>robot@relib.com</webMaster><lastBuildDate>Wed, 03 Dec 2008 06:24:09 GMT</lastBuildDate><ttl>20</ttl><item><title>RE: проблема c openswan - malformed payload in packet</title><link>http://www.relib.com/forums/Topic898667-13-1.aspx</link><description>&lt;BLOCKQUOTE&gt;&lt;FONT color=#111111&gt;# tail /var/log/secure&lt;BR&gt;Jun 14 14:12:34 gw pluto[1875]: packet from x.x.x.x:500: initial Main Mode message received on 213.80.135.138:500 but no connection has been authorized&lt;BR&gt;Jun 14 14:12:38 gw pluto[1875]: packet from x.x.x.x:500: ignoring unknown Vendor ID payload [afc...]&lt;BR&gt;Jun 14 14:12:38 gw pluto[1875]: packet from x.x.x.x:500: ignoring unknown Vendor ID payload [625...]&lt;/FONT&gt; &lt;P&gt;PS: если это о чем-то говорит :-? &lt;/P&gt;&lt;/BLOCKQUOTE&gt;</description><pubDate>Wed, 14 Jun 2006 14:19:08 GMT</pubDate><dc:creator>ERge</dc:creator></item><item><title>проблема c openswan - malformed payload in packet</title><link>http://www.relib.com/forums/Topic898667-13-1.aspx</link><description>&lt;BLOCKQUOTE&gt;мой локальный шлюз&lt;BR&gt;ASPLinux&lt;BR&gt;openswan-2.4.4-1.0.FC4.1 &lt;P&gt;удаленный на каком-то зюхеле&lt;BR&gt;с той стороны вроде как все настроено &lt;P&gt;у меня в конфе следующее:&lt;BR&gt;&lt;FONT color=#111111&gt;conn myconn&lt;BR&gt;    type=tunnel&lt;BR&gt;    left=мой внешний ip&lt;BR&gt;    leftsubnet=моя подсеть/24&lt;BR&gt;    right=удаленный шлюз&lt;BR&gt;    rightsubnet=удаленная подсеть/24&lt;BR&gt;    authby=secret&lt;BR&gt;    disablearrivalcheck=no&lt;BR&gt;    pfs=no&lt;BR&gt;    auto=start&lt;/FONT&gt; &lt;P&gt;першаред кей сделал. &lt;P&gt;но при поднятии канала ругается:&lt;BR&gt;&lt;FONT color=#111111&gt;[root@gw ~]# ipsec auto --up myconn&lt;BR&gt;104 "myconn" #12: STATE_MAIN_I1: initiate&lt;BR&gt;003 "myconn" #12: ignoring unknown Vendor ID payload [afc....]&lt;BR&gt;003 "myconn" #12: ignoring unknown Vendor ID payload [625....]&lt;BR&gt;106 "myconn" #12: STATE_MAIN_I2: sent MI2, expecting MR2&lt;BR&gt;108 "myconn" #12: STATE_MAIN_I3: sent MI3, expecting MR3&lt;BR&gt;003 "myconn" #12: next payload type of ISAKMP Hash Payload has an unknown value: 66&lt;BR&gt;003 "myconn" #12: malformed payload in packet&lt;BR&gt;010 "myconn" #12: STATE_MAIN_I3: retransmission; will wait 20s for response&lt;BR&gt;003 "myconn" #12: byte 2 of ISAKMP Hash Payload must be zero, but is not&lt;BR&gt;003 "myconn" #12: malformed payload in packet&lt;BR&gt;010 "myconn" #12: STATE_MAIN_I3: retransmission; will wait 40s for response&lt;BR&gt;003 "myconn" #12: byte 2 of ISAKMP Hash Payload must be zero, but is not&lt;BR&gt;003 "myconn" #12: malformed payload in packet&lt;BR&gt;031 "myconn" #12: max number of retransmissions (2) reached STATE_MAIN_I3.  Possible authentication failure: no acceptable response to our first encrypted message&lt;BR&gt;000 "myconn" #12: starting keying attempt 2 of an unlimited number, but releasing whack &lt;/FONT&gt;&lt;P&gt;&lt;BR&gt;хотя на другой машине (другая фирма) с такими же настройками и фрисваном все работает. &lt;P&gt;в чем может быть трабл?&lt;BR&gt;помогите настроить... &lt;P&gt;PS: сам не админ, потому прошу прощения за возможно глупые вопросы... &lt;/P&gt;&lt;/BLOCKQUOTE&gt;</description><pubDate>Wed, 14 Jun 2006 11:34:04 GMT</pubDate><dc:creator>ERge</dc:creator></item></channel></rss>