Linux Netfilter discussions
 help / color / mirror / Atom feed
* [Openswan Users] Dead loop on netdevice ipsec0, fix it urgently!
@ 2004-07-09 11:14 Nicole Hähnel
  2004-07-09 11:27 ` Antony Stone
  2004-07-09 14:21 ` [Openswan Users] " Petr Silhavy
  0 siblings, 2 replies; 4+ messages in thread
From: Nicole Hähnel @ 2004-07-09 11:14 UTC (permalink / raw)
  To: users, netfilter

Hi,

I get this error on my firewall-vpn-server

Dead loop on netdevice ipsec0, fix it urgently!


Any ideas where this come from?


Thanks!

Nicole

^ permalink raw reply	[flat|nested] 4+ messages in thread

* Re: Dead loop on netdevice ipsec0, fix it urgently!
  2004-07-09 11:14 [Openswan Users] Dead loop on netdevice ipsec0, fix it urgently! Nicole Hähnel
@ 2004-07-09 11:27 ` Antony Stone
  2004-07-09 11:50   ` Nicole Hähnel
  2004-07-09 14:21 ` [Openswan Users] " Petr Silhavy
  1 sibling, 1 reply; 4+ messages in thread
From: Antony Stone @ 2004-07-09 11:27 UTC (permalink / raw)
  To: netfilter

On Friday 09 July 2004 12:14 pm, Nicole Hähnel wrote:

> Hi,
>
> I get this error on my firewall-vpn-server
>
> Dead loop on netdevice ipsec0, fix it urgently!

What is your ruleset (specifically, any nat rules, and any rules applying to 
interface ipsec0)?

> Any ideas where this come from?

http://www2.frell.ambush.de/archives/freeswan-users/4677.html

Regards,

Antony.

-- 
Most people have more than the average number of legs.

                                                     Please reply to the list;
                                                           please don't CC me.



^ permalink raw reply	[flat|nested] 4+ messages in thread

* Re: Dead loop on netdevice ipsec0, fix it urgently!
  2004-07-09 11:27 ` Antony Stone
@ 2004-07-09 11:50   ` Nicole Hähnel
  0 siblings, 0 replies; 4+ messages in thread
From: Nicole Hähnel @ 2004-07-09 11:50 UTC (permalink / raw)
  To: netfilter

I have no nat rules on interface ipsec0.
There is only one rule on this interface.
It's all allowed.

I have nat rules only for a little group of pcs and a proxy
and they are only for surfing.


Thanks!

Nicole



Antony Stone wrote:

> On Friday 09 July 2004 12:14 pm, Nicole Hähnel wrote:
> 
> 
>>Hi,
>>
>>I get this error on my firewall-vpn-server
>>
>>Dead loop on netdevice ipsec0, fix it urgently!
> 
> 
> What is your ruleset (specifically, any nat rules, and any rules applying to 
> interface ipsec0)?
> 
> 
>>Any ideas where this come from?
> 
> 
> http://www2.frell.ambush.de/archives/freeswan-users/4677.html
> 
> Regards,
> 
> Antony.
> 



^ permalink raw reply	[flat|nested] 4+ messages in thread

* [Openswan Users]  Re: Dead loop on netdevice ipsec0, fix it urgently!
  2004-07-09 11:14 [Openswan Users] Dead loop on netdevice ipsec0, fix it urgently! Nicole Hähnel
  2004-07-09 11:27 ` Antony Stone
@ 2004-07-09 14:21 ` Petr Silhavy
  1 sibling, 0 replies; 4+ messages in thread
From: Petr Silhavy @ 2004-07-09 14:21 UTC (permalink / raw)
  To: Nicole Hähnel; +Cc: users, netfilter

Nicole Hähnel <nicole.haehnel@epost.de> writes:

> Hi,
>
> I get this error on my firewall-vpn-server
>
> Dead loop on netdevice ipsec0, fix it urgently!
>
>
> Any ideas where this come from?
I got this cryptic message when I modified ESP packet in mangle table.
Rule like "iptables -t mangle -A OUTPUT -p 50 -j TOS --set-tos 0x10"
is able to make klips (1.99.x) mad.

^ permalink raw reply	[flat|nested] 4+ messages in thread

end of thread, other threads:[~2004-07-09 14:21 UTC | newest]

Thread overview: 4+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2004-07-09 11:14 [Openswan Users] Dead loop on netdevice ipsec0, fix it urgently! Nicole Hähnel
2004-07-09 11:27 ` Antony Stone
2004-07-09 11:50   ` Nicole Hähnel
2004-07-09 14:21 ` [Openswan Users] " Petr Silhavy

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox