On Mon, Sep 25, 2006 at 02:38:36PM +0400, Evgeniy Polyakov wrote: > > I ran two times the same 'telnet 192.168.4.79 22' and got unencrypted > packets and very long timeout. After some magic initial process things > started to work as expected - only ESP encrypted packets can be found in > tcpdump, until next connection is started, which becames to work not > correctly and then again starts to work as expected.
Perhaps something's screwed up with the policies. Unfortunately the racoon logs draw a blank around the interesting interval as shown by the tcpdump. Please run ip x p once every second and the post what it shows before, during and after the period when unecrypted packets show up on the wire. You only have to do it on the 79 machine since it's the one sending unencrypted data. Cheers, -- Visit Openswan at http://www.openswan.org/ Email: Herbert Xu ~{PmV>HI~} <[EMAIL PROTECTED]> Home Page: http://gondor.apana.org.au/~herbert/ PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt - To unsubscribe from this list: send the line "unsubscribe netdev" in the body of a message to [EMAIL PROTECTED] More majordomo info at http://vger.kernel.org/majordomo-info.html