Hi, First thing I see is that you need to take out the second entry of "keyingtries=0" in /etc/ipsec.conf under "con cisco" (15th line under "con cisco". I believe this is a global setting, which you have already specified at line 3 of "con cisco". Your log reflects: Dec 8 07:08:04 apogee ipsec__plutorun: ipsec_auto: fatal error in "cisco": (/etc/ipsec.conf, line 50) duplicated parameter "keyingtries" Which I think is preventing your cisco connection from being initialized, resulting in numerous failures from this point on. Hope this helps Sam -- redhat-list mailing list unsubscribe mailto:redhat-list-request@xxxxxxxxxx?subject=unsubscribe https://www.redhat.com/mailman/listinfo/redhat-list