[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Sarge + IPTables + Freeswan Firewall Gateway



I have three machines that act as Routers, Firwall and VPN Gateways for my
company.  Each are located in an office across the state and are connected
to the Internet via aDSL.

I've used IPTables to create the firewall and masqurade the outgoing
internet traffic - I'm sure this has been done many many times.

I've used FreeSwan to create three VPN tunnels to connect the office
together.

All of this is working, but I keep seeing things like this in the logs on
each of the machines:

======================================
UNKNOWN: Mar  3 00:05:34 localhost pluto[2851]: "ltoh" #556: received Delete
SA payload: deleting ISAKMP State #556
UNKNOWN: Mar  3 00:50:47 localhost pluto[2851]: "ltoh" #558: received Delete
SA payload: deleting ISAKMP State #558
UNKNOWN: Mar  3 01:00:32 localhost pluto[2851]: "ltop" #559: received Delete
SA payload: deleting ISAKMP State #559
 [ ... ]
Overview summary of log files:
	 Mar 3 had 270 entries of which 172 were relevant Summary by peer:
  Peer ltoh caused 116 lines of output.
	connected from: 
	Keyed: 31 successes 0 failures (max retries: 0)
	IPsec SAs: 3
  Peer ltop caused 123 lines of output.
	connected from: 
	Keyed: 32 successes 0 failures (max retries: 0)
	IPsec SAs: 3
======================================

While everything is working, I'm concerned that these entries mean that
something "just isn't right".  I want to fix the minor problem before it
becomes a major problem.

So, can someone tell me if this is something I should beworried about?  If
so, what should I do about it?

--
Kevin L. Collins, MCSE
Systems Manager
Nesbitt Engineering, Inc.



Reply to: