Networking Forums

Networking Forums > Computer Networking > Linux Networking > IPSec VPN Firewall problem

Reply
Thread Tools Display Modes

IPSec VPN Firewall problem

 
 
Jason A. Rust
Guest
Posts: n/a

 
      02-04-2005, 09:22 PM
Hello,

I've got a Win XP laptop sitting behind a RH 2.2.16-22 (ipchains)
firewall that's been patched to support VPN masquerading. I already
have 2 other VPN clients working this way, but I just got a new one that
I need to connect to. I can successfully make the VPN connection, but
when I attempt to access the remote network through the tunnel, nothing
works...not even ping. I see the following in the system log:

Feb 2 01:22:17 <myfirewallname> kernel: ip_masq_out_get_isakmp(): zero
icookie, pkt fm <laptop ip> discarded

It looks like packets from that client are being dropped summarily
whenever that particular VPN is connected before even being sent to the
remote network, and I have no idea why. I can't seem to find any
information regarding this error anywhere.

Like I said, I've used two other VPN clients behind this firewall for
over a year, so I know the VPN masquerading is working properly. I also
know that the problem is on the firewall end because I've managed to use
the VPN client in question on the same laptop outside of this LAN. I
was hoping someone might be able to give me inkling of what causes the
zero icookie error.

Thanks in advance!

Jason Rust

 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
IPSec trough linux firewall Jan Rezab Linux Networking 1 10-19-2007 07:13 PM
IPSEC across PIX firewall =?Utf-8?B?SG91ZGluaQ==?= Windows Networking 2 11-13-2004 12:28 AM
Kernel 2.6 IPSEC and Firewall Nadav Linux Networking 0 02-07-2004 10:06 PM
IPSEC L2tpd gateway za firewall'em grayman Linux Networking 1 01-21-2004 10:13 PM
Win2k --> firewall --> ipsec /freeswan --> remote network Eel Linux Networking 0 01-14-2004 02:14 AM



1 2 3 4 5 6 7 8 9 10 11