[Openswan Users] crl.pem segfaults Pluto
Ken Bantoft
ken at xelerance.com
Thu May 20 13:53:56 CEST 2004
Known bug in 2.1.1/2.1.0. Please upgrade to 2.1.2 to resolve this.
On Tue, 18 May 2004, Warren Hinscliff wrote:
> I'm running OpenSwan 2.1.1 on Debian unstable (Kernel 2.4.24). I have
> installed the software and can run a connection with shared secrets with
> no problems.
>
> I want to use X.509 certificates with Windows clients. I set up a
> certificate authority on the OpenSwan server and generated certificates.
> However when I put them in place, OpenSwan no longer works - Pluto seg
> faults. This happens even if the only connection set to auto-start uses
> shared secrets not certificates.
>
> It seems to depend on the /etc/ipsec.d/crls/crl.pem file - if this
> exists Pluto dies, apparently at the point when it reads it. Remove this
> and it starts OK.
>
> Can anyone point me to what may be the problem?
>
> I see in the list archives what seems to be the same problem in 2.1.0,
> but apparently it was to be fixed in 2.1.1, which I'm running.
--
Ken Bantoft VP Business Development
ken at xelerance.com Xelerance Corporation
sip://toronto.xelerance.com http://www.xelerance.com
The future is here. It's just not evenly distributed yet.
-- William Gibson
More information about the Users
mailing list