[Openswan Users] CRLS in 2.1.0

Ken Bantoft ken at xelerance.com
Sun Mar 21 06:35:37 CET 2004


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


On Sat, 20 Mar 2004, Dennis Boylan wrote:

> While trying to debug my new VPN setup, I installed Linux 2.4.25 and
> OpenSwan 2.1.0 on my Mandrake 10.0 Community release machine.  If I follow
> Nate's guide for X.509 certificates, I install the crls.pem I generated
> on the main machine.  Pluto dies trying to load it.  By removing it,
> pluto is happy and I can create tunnels.  There is also an issue in the
> make install, it does not install _pluto_adns.  I had to manually install this
> to make pluto work without generating an error.

Fixed in CVS, and will be fixed in 2.1.1 when it's released.  There's a 
patch on www.openswan.org/code for the _pluto_adns stuff.

The crls.pem file cores seem to be machine specific - very hard to track 
down.  If you have a copy of one that crashs pluto, if possible, give me a 
copy so we can test further.

> The main machine is a fedora core 1 with 2.4.25 and 2.1.0rc1.  It does not
> have the issue with the crls.pem file.  It also properly installs _pluto_adns.


- -- 
Ken Bantoft			VP Business Development
ken at xelerance.com		Xelerance Corporation
sip://toronto.xelerance.com	http://www.xelerance.com

The future is here. It's just not evenly distributed yet. 
        -- William Gibson

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)

iD8DBQFAXSmrPiOgilmwgkgRAs+0AJ9EXuLfO2CPkDoKAOUnTIVTmiQOpgCeJxmo
bDZ9NzFWg6fgBzi3HTUYBX8=
=jy8W
-----END PGP SIGNATURE-----



More information about the Users mailing list