[Openswan Users] openswan-2 cvs x509 troubles

Dax Kelson dax at gurulabs.com
Tue Apr 27 03:04:06 CEST 2004


On Mon, 2004-04-26 at 20:53, Ken Bantoft wrote:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> 
> Oops.  leftsendcert= might work better, but it shouldn't even be needed, 
> as it's set to ifasked by default.

Well, I can confirm that it is is currently (CVS from today) broken.

Without the leftsendcert on either side I get "no RSA public key known".

I add leftsendcert=always on both sides and the SA gets established.

Dax Kelson
Guru Labs



More information about the Users mailing list