[Openswan Users] Openswan and V-IPSecure

Paul Wouters paul at xelerance.com
Fri Sep 11 09:14:58 EDT 2009


On Fri, 11 Sep 2009, JT Edwards wrote:

> I went ahead and upgraded to 2.6.23 (from 2.4.15.... I didn't know if I was
> supposed to take on this new code or not).
>
> It seems that the problems with certificates exchanging continues but in a
> different aspect.  Paul, the AER DSN was absolutely correct, but now I am at
> this stage:

> 2009 Sep 11 00:33:08 [SRXN3205] [IKE] no peer's CERT payload found._

> # Add connections here
> conn ait-torden
>       auto=start
>       authby=rsasig
>       rekey=no
>       type=transport
>       left=22.123.34.56
>       leftrsasigkey=%cert
>       leftsendcert=always
>       leftid="C=US/ST=TX/L=Austin/O=AutomaticIT/OU=Executive"
>       right=12.234.22.224
>       rightid="C=US/ST=TX/L=Austin/O=AutomaticIT/OU=Executive"
>       rightrsasigkey=%cert

You're missing leftcert=/your/cert/file.pem

Paul


More information about the Users mailing list