Package: openswan
Version: 1:2.2.0-8
Severity: important

Even when the corrent openswan-modules-* modules are installed
startklips sometimes loads the af_key module instead of the ipsec module.
I did not succeed in reproducing this everytime. It might be, that
after a reboot the af_key module is already loaded. Or that with
a restart of ipsec for some reason ipsec.o does not get loaded.

One problem I found in _startklips is that the script checks with -f for 
/proc/net/ipsec_version "if file exists and is a regular file". But 
this is a symbolic link to /proc/net/ipsec/version. So the test is always
wrong. I am not shure if this is the cause of the above problem, but it
should be corrected anyway.

Christoph

-- System Information:
Debian Release: 3.1
  APT prefers testing
  APT policy: (99, 'testing'), (50, 'unstable')
Architecture: i386 (i686)
Kernel: Linux 2.4.27-2-686-smp
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)

Versions of packages openswan depends on:
ii  bind9-host [host]           1:9.2.4-1    Version of 'host' bundled with BIN
ii  bsdmainutils                6.0.17       collection of more utilities from 
ii  debianutils                 2.8.4        Miscellaneous utilities specific t
ii  gawk                        1:3.1.4-2    GNU awk, a pattern scanning and pr
ii  iproute                     20041019-3   Professional tools to control the 
ii  ipsec-tools                 1:0.5.2-1    IPsec tools for Linux
ii  libc6                       2.3.2.ds1-22 GNU C Library: Shared libraries an
ii  libgmp3                     4.1.4-6      Multiprecision arithmetic library
ii  libssl0.9.7                 0.9.7e-3     SSL shared libraries
ii  makedev                     2.3.1-77     creates device files in /dev
ii  openssl                     0.9.7e-3     Secure Socket Layer (SSL) binary a

-- debconf information:
  openswan/existing_x509_key_filename:
* openswan/x509_state_name:
* openswan/x509_email_address:
* openswan/x509_country_code: DE
* openswan/x509_self_signed: true
* openswan/rsa_key_length: 2048
* openswan/restart: false
* openswan/start_level: earliest
* openswan/enable-oe: false
* openswan/x509_organizational_unit:
* openswan/x509_locality_name: Mainz
* openswan/existing_x509_certificate: false
  openswan/existing_x509_certificate_filename:
* openswan/x509_common_name: mbww-gate
* openswan/create_rsa_key: true
* openswan/rsa_key_type: x509
* openswan/x509_organization_name: MBWW


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to