From: Sam Sgro (sam_at_freeswan.org)
Date: Mon Jul 29 2002 - 16:16:36 CEST
-----BEGIN PGP SIGNED MESSAGE-----
On Tue, 30 Jul 2002, Bevan DeQueker wrote:
> Hi.
>
> I haven't used ipsec before.
> and I'm trying to setup a road warior connection - but failing :-(
> (I'm runing mandrake 8.2 with a freeswan 1.97 rpm - patched for x509 - and
> using shared secrets)
>
> my auth.log file has these warnings :
>
> Could not change to directory '/etc/freeswan/ipsec.d/cacerts'
> Could not change to directory '/etc/freeswan/ipsec.d/crls'
> could not open my default X.509 cert file '/etc/freeswan/x509cert.der'
> OpenPGP certificate file '/etc/freeswan/pgpcert.pgp' not found
The x.509 patch uses the "ipsec.d" subdirectory to house its certificates and
CRLs. Perhaps the RPM didn't create these directories on install.
Though the x.509 patch is not my baliwick, I believe you can safely ignore
these errors if you are just using shared secret authentication. Read the
X.509 FreeS/WAN Patch - Installation and Configuration guide here:
http://www.strongsec.com/freeswan/install.html
for more information.
Sam Sgro
sam_at_freeswan.org
-----BEGIN PGP SIGNATURE-----
Version: 2.6.3ia
Charset: noconv
Comment: For the matching public key, finger the Reply-To: address.
iQCVAwUBPUVORUOSC4btEQUtAQGqHQQA093RlvrlNoVpJ15cznlEAq79RozATQ3U
HQDttlaL29LbDF0pjk2mRQLRPdgj1TvJI1LHqM/Pr43FkJx6QRar7tjNMw7mr+yf
Fov5kfHE63L56jaYhF3laU+Ks+Cn1FfobLOdL8XNz2YY2DjuXT3lt0i2XfcrRWzB
u2ltfxMFdPw=
=s0we
-----END PGP SIGNATURE-----
_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users
This archive was generated by hypermail 2.1.4 : Mon Aug 05 2002 - 21:01:34 CEST