[strongSwan] Error Generating a host or user certificate

Andreas Steffen andreas.steffen at strongswan.org
Wed Jun 16 16:37:29 CEST 2010

In openssl.cnf you must define the correct path to the CA's
private key with which the end entity certificate is signed with.


On 06/16/2010 03:20 PM, Harini Gopalakrishnan wrote:
> Hi all,
> i am not able to run this statement  while installing strongswan
>  openssl ca -in hostReq.pem -days 730 -out hostCert.pem -notext
> i am getting an error  saying
> Using configuration from /etc/pki/tls/openssl.cnf
> Error opening CA private key ../../CA/private/cakey.pem
> 26643:error:02001002:system library:fopen:No such file or directory:bss_file.c:352:fopen('../../CA/private/cakey.pem','r')
> 26643:error:20074002:BIO routines:FILE_CTRL:system lib:bss_file.c:354:
> unable to load CA private key
> kindly help me out
> regards
> harini
> This Email may contain confidential or privileged information for the intended recipient (s) If you are not the intended recipient, please do not use or disseminate the information, notify the sender and delete it from your system.

Andreas Steffen                         andreas.steffen at strongswan.org
strongSwan - the Linux VPN Solution!                www.strongswan.org
Institute for Internet Technologies and Applications
University of Applied Sciences Rapperswil
CH-8640 Rapperswil (Switzerland)

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 3430 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://lists.strongswan.org/pipermail/users/attachments/20100616/cc232d27/attachment.bin>

More information about the Users mailing list