From owner-freebsd-questions@FreeBSD.ORG Tue Apr 8 23:48:43 2008 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 5A3721065670 for ; Tue, 8 Apr 2008 23:48:43 +0000 (UTC) (envelope-from mike@sentex.net) Received: from smarthost2.sentex.ca (smarthost2.sentex.ca [205.211.164.50]) by mx1.freebsd.org (Postfix) with ESMTP id 0898F8FC1C for ; Tue, 8 Apr 2008 23:48:42 +0000 (UTC) (envelope-from mike@sentex.net) Received: from Mobile2.sentex.ca (cage.simianscience.com [64.7.134.1]) by smarthost2.sentex.ca (8.14.2/8.14.2) with SMTP id m38NmfVc012419; Tue, 8 Apr 2008 19:48:41 -0400 (EDT) (envelope-from mike@sentex.net) From: mike@sentex.net To: Mark Busby Date: Tue, 08 Apr 2008 19:48:46 -0400 Message-ID: <5v0ov3hm2eikciaj339a3ue0ptr6jc93rv@4ax.com> References: <730653.69491.qm@web81207.mail.mud.yahoo.com> In-Reply-To: <730653.69491.qm@web81207.mail.mud.yahoo.com> X-Mailer: Forte Agent 4.2/32.1118 MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: quoted-printable Cc: freebsd-questions@freebsd.org Subject: Re: ipsec-racoon and a cisco pix 515e X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 08 Apr 2008 23:48:43 -0000 On Tue, 8 Apr 2008 08:24:42 -0700 (PDT), in sentex.lists.freebsd.questions you wrote: >Having trouble getting my first connection >: DEBUG: notification message 14:NO-PROPOSAL-CHOSEN, doi=3D1 = proto_id=3D3 spi=3D0fddcb32(size=3D4). > setkey -D -P >192.168.75.101/0[any] 192.168.1.203/0[any] ip4 The policy you have installed must match what is on the PIX. The above error usually means they dont match. ---Mike