Package: strongswan Version: 4.2.4-5 Severity: normal
grep -A 1 secrets /var/log/daemon.log Nov 20 16:04:38 raven charon: 01[CFG] loading secrets from '/etc/ipsec.secrets' Nov 20 16:04:38 raven charon: 01[CFG] line 10: missing ':' separator There is include directive on line 10 This lead to ikev2 don't work because of missing private key. Including directly : RSA /etc/ipsec.d/private/ravenKey.pem instead "include" directive solve this problem. That is "include" directive don't work. -- System Information: Debian Release: lenny/sid APT prefers unstable APT policy: (500, 'unstable') Architecture: i386 (i686) Kernel: Linux 2.6.26-1-686 (SMP w/1 CPU core) Locale: LANG=en_US, LC_CTYPE=en_US (charmap=ISO-8859-1) Shell: /bin/sh linked to /bin/bash Versions of packages strongswan depends on: ii bsdmainutils 6.1.10 collection of more utilities from ii debconf [debconf-2.0] 1.5.24 Debian configuration management sy ii debianutils 2.30 Miscellaneous utilities specific t ii host 20000331-9 utility for querying DNS servers ii iproute 20080725-2 networking and traffic control too ii ipsec-tools 1:0.7.1-1.2 IPsec tools for Linux ii libc6 2.7-16 GNU C Library: Shared libraries ii libgmp3c2 2:4.2.2+dfsg-3 Multiprecision arithmetic library ii libldap-2.4-2 2.4.11-1 OpenLDAP libraries ii libssl0.9.8 0.9.8g-14 SSL shared libraries ii openssl 0.9.8g-14 Secure Socket Layer (SSL) binary a strongswan recommends no packages. Versions of packages strongswan suggests: pn curl <none> (no description available) -- debconf information: * strongswan/x509_self_signed: false * strongswan/x509_state_name: Moscow * strongswan/start_level: earliest * strongswan/x509_organizational_unit: design strongswan/ikev2: true * strongswan/x509_email_address: [EMAIL PROTECTED] * strongswan/enable-oe: false * strongswan/x509_locality_name: Moscow * strongswan/x509_country_code: RU strongswan/ikev1: true * strongswan/x509_organization_name: INIST strongswan/existing_x509_key_filename: * strongswan/rsa_key_type: x509 * strongswan/create_rsa_key: true * strongswan/existing_x509_certificate: true * strongswan/restart: true * strongswan/x509_common_name: raven.inist.oz * strongswan/rsa_key_length: 2048 strongswan/existing_x509_certificate_filename: -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

