[Openswan Users] Pluto crash on invalid ipsec.secrets

Mihajlo Cvetanović mac at netset.co.yu
Fri Jun 30 12:42:57 CEST 2006


When I erroneously changed the ipsec.secrets file and restarted ipsec 
the pluto crashed. Here is nvalid ipsec.secrets file (note that the 
second line is commented out, but all consecutive related lines aren't):

: RSA /etc/ipsec.d/private/west.key "password"
# : RSA    {
    # RSA 2192 bits   fc4_levi   Mon May 22 15:08:04 2006
    # for signatures only, UNSAFE FOR ENCRYPTION
    #pubkey=0sAQO...
    Modulus: 0xa1c...
    PublicExponent: 0x03
    # everything after this point is secret
    PrivateExponent: 0x1af...
    Prime1: 0xf8e...
    Prime2: 0xa66...
    Exponent1: 0xa5e...
    Exponent2: 0x6ee...
    Coefficient: 0x252...
    }
# do not change the indenting of that "}"

Related lines in /var/log/messages:

Jun 30 10:48:33 localhost kernel: IPSEC EVENT: KLIPS device ipsec0 shut 
down.
Jun 30 10:48:33 localhost kernel:
Jun 30 10:48:33 localhost ipsec_setup: ...Openswan IPsec stopped
Jun 30 10:48:33 localhost ipsec_setup: Stopping Openswan IPsec...
Jun 30 10:48:33 localhost ipsec_setup: KLIPS debug `none'
Jun 30 10:48:33 localhost kernel:
Jun 30 10:48:33 localhost ipsec_setup: KLIPS ipsec0 on eth1 
10.0.0.3/255.0.0.0 broadcast 10.255.255.255
Jun 30 10:48:33 localhost ipsec_setup: ...Openswan IPsec started
Jun 30 10:48:33 localhost ipsec_setup: Starting Openswan IPsec 2.4.5...
Jun 30 10:48:34 localhost ipsec__plutorun: 
/usr/local/lib/ipsec/_plutorun: line 211:  3490 Floating point 
exception/usr/local/libexec/ipsec/pluto --nofork --secretsfile 
/etc/ipsec.secrets --ipsecdir /etc/ipsec.d --use-auto --uniqueids
Jun 30 10:48:34 localhost ipsec__plutorun: !pluto failure!:  exited with 
error status 136 (signal 8)
Jun 30 10:48:34 localhost ipsec__plutorun: restarting IPsec after pause...



More information about the Users mailing list