[Openswan Users] Pluto crash on invalid ipsec.secrets
Mihajlo Cvetanović
mac at netset.co.yu
Fri Jun 30 12:42:57 CEST 2006
When I erroneously changed the ipsec.secrets file and restarted ipsec
the pluto crashed. Here is nvalid ipsec.secrets file (note that the
second line is commented out, but all consecutive related lines aren't):
: RSA /etc/ipsec.d/private/west.key "password"
# : RSA {
# RSA 2192 bits fc4_levi Mon May 22 15:08:04 2006
# for signatures only, UNSAFE FOR ENCRYPTION
#pubkey=0sAQO...
Modulus: 0xa1c...
PublicExponent: 0x03
# everything after this point is secret
PrivateExponent: 0x1af...
Prime1: 0xf8e...
Prime2: 0xa66...
Exponent1: 0xa5e...
Exponent2: 0x6ee...
Coefficient: 0x252...
}
# do not change the indenting of that "}"
Related lines in /var/log/messages:
Jun 30 10:48:33 localhost kernel: IPSEC EVENT: KLIPS device ipsec0 shut
down.
Jun 30 10:48:33 localhost kernel:
Jun 30 10:48:33 localhost ipsec_setup: ...Openswan IPsec stopped
Jun 30 10:48:33 localhost ipsec_setup: Stopping Openswan IPsec...
Jun 30 10:48:33 localhost ipsec_setup: KLIPS debug `none'
Jun 30 10:48:33 localhost kernel:
Jun 30 10:48:33 localhost ipsec_setup: KLIPS ipsec0 on eth1
10.0.0.3/255.0.0.0 broadcast 10.255.255.255
Jun 30 10:48:33 localhost ipsec_setup: ...Openswan IPsec started
Jun 30 10:48:33 localhost ipsec_setup: Starting Openswan IPsec 2.4.5...
Jun 30 10:48:34 localhost ipsec__plutorun:
/usr/local/lib/ipsec/_plutorun: line 211: 3490 Floating point
exception/usr/local/libexec/ipsec/pluto --nofork --secretsfile
/etc/ipsec.secrets --ipsecdir /etc/ipsec.d --use-auto --uniqueids
Jun 30 10:48:34 localhost ipsec__plutorun: !pluto failure!: exited with
error status 136 (signal 8)
Jun 30 10:48:34 localhost ipsec__plutorun: restarting IPsec after pause...
More information about the Users
mailing list