New error with ipsec.conf:3 nat_traversal - which is obsolete and shouldn't be there.
With todays problem, i recommend the following:
git diff diff --git a/neutron_vpnaas/services/vpn/device_drivers/libreswan_ipsec.py b/neutron_vpnaas/services/vpn/device_drivers/libreswan_ipsec.py index 90731f7a4..5b5f648b2 100644 --- a/neutron_vpnaas/services/vpn/device_drivers/libreswan_ipsec.py +++ b/neutron_vpnaas/services/vpn/device_drivers/libreswan_ipsec.py @@ -106,7 +106,6 @@ class LibreSwanProcess(ipsec.OpenSwanProcess):
def start_pluto(self): cmd = ['pluto', - '--use-netkey', '--uniqueids']
if self.conf.ipsec.enable_detailed_logging: diff --git a/neutron_vpnaas/services/vpn/device_drivers/template/openswan/ipsec.conf.template b/neutron_vpnaas/services/vpn/device_drivers/template/openswan/ipsec.conf.template index 450bef517..bf06cd95d 100644 --- a/neutron_vpnaas/services/vpn/device_drivers/template/openswan/ipsec.conf.template +++ b/neutron_vpnaas/services/vpn/device_drivers/template/openswan/ipsec.conf.template @@ -1,6 +1,5 @@ # Configuration for {{vpnservice.id}} config setup - nat_traversal=yes virtual_private={{virtual_privates}} conn %default keylife=60m
New error with ipsec.conf:3 nat_traversal - which is obsolete and shouldn't be there.
With todays problem, i recommend the following:
git diff vpnaas/ services/ vpn/device_ drivers/ libreswan_ ipsec.py b/neutron_ vpnaas/ services/ vpn/device_ drivers/ libreswan_ ipsec.py .5b5f648b2 100644 vpnaas/ services/ vpn/device_ drivers/ libreswan_ ipsec.py vpnaas/ services/ vpn/device_ drivers/ libreswan_ ipsec.py s(ipsec. OpenSwanProcess ):
diff --git a/neutron_
index 90731f7a4.
--- a/neutron_
+++ b/neutron_
@@ -106,7 +106,6 @@ class LibreSwanProces
def start_pluto(self):
'--uniqueids' ]
cmd = ['pluto',
- '--use-netkey',
if self.conf. ipsec.enable_ detailed_ logging: vpnaas/ services/ vpn/device_ drivers/ template/ openswan/ ipsec.conf. template b/neutron_ vpnaas/ services/ vpn/device_ drivers/ template/ openswan/ ipsec.conf. template .bf06cd95d 100644 vpnaas/ services/ vpn/device_ drivers/ template/ openswan/ ipsec.conf. template vpnaas/ services/ vpn/device_ drivers/ template/ openswan/ ipsec.conf. template private= {{virtual_ privates} }
diff --git a/neutron_
index 450bef517.
--- a/neutron_
+++ b/neutron_
@@ -1,6 +1,5 @@
# Configuration for {{vpnservice.id}}
config setup
- nat_traversal=yes
virtual_
conn %default
keylife=60m