From mboxrd@z Thu Jan 1 00:00:00 1970 From: Michael Tremer To: development@lists.ipfire.org Subject: Re: [Development] Strongswan 5.0.0 Date: Mon, 06 Aug 2012 23:11:55 +0200 Message-ID: <1344287515.7540.32.camel@rice-oxley.tremer.info> In-Reply-To: <50201FA9.5070609@ipfire.org> MIME-Version: 1.0 Content-Type: multipart/mixed; boundary="===============7404737084641059502==" List-Id: --===============7404737084641059502== Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: 7bit Please try to manually stop strongswan with the helper tool: ipsecctrl D Try to start it again with: ipsecctrl S On Mon, 2012-08-06 at 21:48 +0200, Stefan Schantl wrote: > Hello Michael, > > I've tested to stop IPSec from shell which worked without problems. But > if I try to disable and stop it from the WUI, by > unsing the checkbox the service does a restart and no shutdown. > > I've looked inside the error_log from the httpd, and found the following > lines: > > [Mon Aug 06 21:42:08 2012] [error] [client 192.168.xxx.xxx] IPSec > enabled on orange but orange interface is invalid or not found, referer: > https://gate.xxx:444/cgi-bin/vpnmain.cgi > [Mon Aug 06 21:42:08 2012] [error] [client 192.168.xxx.xxx] IPSec > enabled on blue but blue interface is invalid or not found, referer: > https://gate.xxx:444/cgi-bin/vpnmain.cgi > [Mon Aug 06 21:42:08 2012] [error] [client 192.168.xxx.xxx] Stopping > strongSwan IPsec..., referer: https://gate.xxx:444/cgi-bin/vpnmain.cgi > [Mon Aug 06 21:42:12 2012] [error] [client 192.168.xxx.xxx] Starting > strongSwan 5.0.0 IPsec [starter]..., referer: > https://gate.xxx:444/cgi-bin/vpnmain.cgi > [Mon Aug 06 21:42:12 2012] [error] [client 192.168.xxx.xxx] , referer: > https://gate.xxx:444/cgi-bin/vpnmain.cgi > > Why are there entries about an orange and blue network, I don't have one > of them...... > > Do you have any idea about that ? > > Stefan > > > On Mon, 2012-08-06 at 17:21 +0200, Stefan Schantl wrote: > >> The only bad point, I've to report is, that after the update I can't > >> disable IPSec over the WUI anymore - may other testers will report the > >> same issue. > > What is the exact problem? Did you get an internal server error from the > > CGI script? Need a more precise error report. > > > > Michael > > > > > > _______________________________________________ > SIG-VPN mailing list > SIG-VPN(a)lists.ipfire.org > http://lists.ipfire.org/mailman/listinfo/sig-vpn --===============7404737084641059502==--