[Openswan Users] query

Paul Wouters paul at xelerance.com
Tue Feb 16 10:34:11 EST 2010


On Tue, 16 Feb 2010, neeraj goyal wrote:

> conn sample1
> 
>         left=192.168.103.238
>         leftsendcert=always
>         leftrsasigkey=%cert
>         right=192.168.103.139
>         rightcert=/etc/ipsec.d/certs/westCert.pem
>         rightsendcert=always
>         rightrsasigkey=%cert
>         auto=add
> 
> Similarily, I have placed the westCert.pem in /etc/ipsec.d/certs in 192.168.103.139 machine. Now I am not able to
> connect the ipsec between two. It shows (while trying to up the connection using ipsec auto --up sample1)

> 003 "sample1" #2: ignoring informational payload, type INVALID_KEY_INFORMATION msgid=00000000

Add rightid=%fromcert

Paul


More information about the Users mailing list