[Openswan Users] crl.pem segfaults Pluto

Ken Bantoft ken at xelerance.com
Thu May 20 13:53:56 CEST 2004



Known bug in 2.1.1/2.1.0.  Please upgrade to 2.1.2 to resolve this.


On Tue, 18 May 2004, Warren Hinscliff wrote:

> I'm running OpenSwan 2.1.1 on Debian unstable (Kernel 2.4.24). I have
> installed the software and can run a connection with shared secrets with
> no problems.
> 
> I want to use X.509 certificates with Windows clients. I set up a
> certificate authority on the OpenSwan server and generated certificates.
> However when I put them in place, OpenSwan no longer works - Pluto seg
> faults. This happens even if the only connection set to auto-start uses
> shared secrets not certificates.
> 
> It seems to depend on the /etc/ipsec.d/crls/crl.pem file - if this
> exists Pluto dies, apparently at the point when it reads it. Remove this
> and it starts OK.
> 
> Can anyone point me to what may be the problem? 
> 
> I see in the list archives what seems to be the same problem in 2.1.0,
> but apparently it was to be fixed in 2.1.1, which I'm running.

-- 
Ken Bantoft			VP Business Development
ken at xelerance.com		Xelerance Corporation
sip://toronto.xelerance.com	http://www.xelerance.com

The future is here. It's just not evenly distributed yet. 
        -- William Gibson




More information about the Users mailing list