[Openswan Users] CKAIDNSS keyword not found where expected in RSA key in /var/log/secure

Paul Wouters paul at xelerance.com
Wed Jul 8 05:57:17 EDT 2009


On Tue, 7 Jul 2009, Greg Scott wrote:

> What does "CKAIDNSS keyword not found where expected in RSA key" mean?

I don't know, but

> I have an aging system running Linux Openswan U2.4.5/K2.6.18-1.2798.fc6
> (netkey).  I am replacing it with a new system running Linux Openswan
> U2.6.21/K(no kernel code presently loaded).

> So I copied the hostkey.secrets file and appropriate .conf files from the
> old to the new system.  When I start IPSEC on the new system, I see this
> message in /var/log/secure:
>  
> Jul  7 17:59:02 huge-fw pluto[4537]: "/etc/ipsec.d/hostkey.secrets" line
> 14: CKAIDNSS keyword not found where expected in RSA key
> What does this mean?

The format has not changes between those openswan versions, so I suspect
a cut and paste error or CR/LF mangling has happened while transfering
the files.

Paul


More information about the Users mailing list