IPv6 readyNote: This archive passes through spamassassin. Every mail marked with the subject "*****SPAM*****" has exceed a certain threshold of spam-like behaviour.

Re: [Users] freeS/WAN <--> freeS/WAN via certificates

From: Andreas Steffen (andreas.steffen_at_strongsec.net)
Date: Tue Jul 23 2002 - 08:34:13 CEST


No problem at all. FreeS/WAN to FreeS/WAN connections
have been running successfully with X.509 certificates for years.
If you could send me complete barfs from both ends after having
set

   plutodebug="crypt parsing emitting control"

in both ipsec.conf files. Then restart IPsec with

   ipsec setup restart

and try to negotiate a connection. Then generate the barfs:

   ipsec barf > barf.txt

Regards

Andreas

Marc Tinnemeyer wrote:
> hi all,
>
> has someone already setup a connection between two freeS/WAN gateways
> using x.509 certificates ?
>
> I always get the errormessage:
>
> no RSA public key known for 'C=DE, O=EMG, CN=test_at_test.de'
>
> Authentication based on standard RSA Keys runs pretty fine, and even
> Windows Roadwarriors can connect sans problems.
> I'd be happy if someone has a solution or hint for my problem.
>
> thanx a lot
>
> best regards
>
> Marc Tinnemeyer
> _______________________________________________
> Users mailing list
> Users_at_lists.freeswan.org
> http://lists.freeswan.org/mailman/listinfo/users

-- 
======================================================================
Andreas Steffen                 e-mail: andreas.steffen_at_strongsec.com
strongSec GmbH                  phone:  +41 76 340 25 56
Alter Zürichweg 20              home:   http://www.strongsec.com
CH-8952 Schlieren (Switzerland)
==========================================[strong internet security]==

_______________________________________________ Users mailing list Users_at_lists.freeswan.org http://lists.freeswan.org/mailman/listinfo/users



This archive was generated by hypermail 2.1.3 : Mon Jul 29 2002 - 05:20:26 CEST