[vpnc-devel] VPNC and ASA 5510 series

Carlton Whitehead cebesius at cebesius.com
Sun Jun 15 03:46:14 CEST 2008


Joerg Mayer wrote:
> On Sat, Jun 14, 2008 at 06:08:50PM -0400, Carlton Whitehead wrote:
>   
>> I applied it to the 294 revision which was shown in the .diff, compiled 
>> it, but it still won't connect.  I cleared the local svn copy and 
>> checked out the latest 297, applied the patch, compiled it, and still 
>> unable to connect with 3DES.  It only works if I enable 1DES.
>>
>> Do you have any other ideas?
>>     
>
> Unless you've run an old version of the binary we'll need to
> try something new: Next would be to change the order of the attributes
> (put the keylength after the crypto algorithm).
> Please test the attached patch.
>
>  Ciao
>       Joerg
>   
> ------------------------------------------------------------------------
>
> _______________________________________________
> vpnc-devel mailing list
> vpnc-devel at unix-ag.uni-kl.de
> https://lists.unix-ag.uni-kl.de/mailman/listinfo/vpnc-devel
> http://www.unix-ag.uni-kl.de/~massar/vpnc/
I applied it to 304, but still having the same problem.  1DES works, but 
3DES doesn't.  Is there anything else I can provide that would help?

Just to be sure, I did vpnc --version
vpnc version 0.5.1-304
Copyright (C) 2002-2006 Geoffrey Keating, Maurice Massar, others
vpnc comes with NO WARRANTY, to the extent permitted by law.
You may redistribute copies of vpnc under the terms of the GNU General
Public License.  For more information about these matters, see the files
named COPYING.
Built without openssl (certificate) support.

Supported DH-Groups: nopfs dh1 dh2 dh5
Supported Hash-Methods: md5 sha1
Supported Encryptions: null des 3des aes128 aes192 aes256
Supported Auth-Methods: psk psk+xauth


Thanks for all your help Joerg!

Regards,
Carlton


More information about the vpnc-devel mailing list