EFW Support

Support => VPN Support => Topic started by: flaviobono on Thursday 28 June 2012, 06:38:14 pm



Title: vpn ipsec error certificate
Post by: flaviobono on Thursday 28 June 2012, 06:38:14 pm
Hi forum,

When I start ipsec, for a RoadWarrior tunnel (EFW 2.5.1 ), the server returns this error:

opening '/etc/ipsec/ipsec.d/certs/flaviobonocert.pem' failed: No such file or directory

name file in the path of the certificate that is invoked by the remote host is wrong,

opening '/ etc / ipsec / ipsec.d / certs / flaviobonocert.pem'

but there is a file named  flaviobono.p12

where do I change this ?

Jun 28 10:17:58 efw-1303344627 pluto[27079]: adding interface lo/lo 127.0.0.1:4500
Jun 28 10:17:58 efw-1303344627 pluto[27079]: adding interface lo/lo ::1:500
Jun 28 10:17:58 efw-1303344627 pluto[27079]: loading secrets from "/etc/ipsec/ipsec.secrets"
Jun 28 10:17:58 efw-1303344627 pluto[27079]:   loaded private key from '/etc/ipsec/ipsec.d/certs/hostkey.pem'
Jun 28 10:17:58 efw-1303344627 pluto[27079]:   loaded host certificate from '/etc/ipsec/ipsec.d/certs/hostcert.pem'
Jun 28 10:17:58 efw-1303344627 pluto[27079]:   id '%any' not confirmed by certificate, defaulting to 'C=IT, ST=bergamo, O=eci, OU=ced, CN=XXXXXXXXXXX'
Jun 28 10:17:58 efw-1303344627 pluto[27079]:   opening '/etc/ipsec/ipsec.d/certs/flaviobonocert.pem' failed: No such file or directory
Jun 28 10:17:58 efw-1303344627 pluto[27079]: building CRED_CERTIFICATE - PLUTO_CERT failed, tried 2 builders
Jun 28 10:17:58 efw-1303344627 pluto[27079]: added connection description "flaviobono"
Jun 28 10:17:59 efw-1303344627 sudo:   nobody : TTY=unknown ; PWD=/home/httpd/cgi-bin ; USER=root ; COMMAND=/usr/sbin/ipsec status