[strongSwan] [strongswan]segmentation fault on the embeded system

Anton warm at stack.ru
Thu May 3 17:53:02 CEST 2012


Hi.

Why don't You use fresh version of strongswan ? 4.6.3 released a few day(hours?) ago. It works on openwrt (MIPS).


On Thu, 3 May 2012 19:30:35 +0700
施渊籍 <shiyuanji at ict.ac.cn> wrote:

> hi,all
>       i  used  the strongswan 4.5.0, and it is running on the mips system. but there is a  segmentation fault.
>  
> the followed is the log:
>  
> 00[LIB] plugin 'aes': loaded successfully
> 00[LIB] plugin 'des': loaded successfully
> 00[LIB] plugin 'sha1': loaded successfully
> 00[LIB] plugin 'sha2': loaded successfully
> 00[LIB] plugin 'md5': loaded successfully
> 00[LIB] plugin 'random': loaded successfully
> 00[LIB] plugin 'x509': loaded successfully
> 00[LIB] plugin 'revocation': loaded successfully
> 00[LIB] plugin 'pubkey': loaded successfully
> 00[LIB] plugin 'pkcs1': loaded successfully
> 00[LIB] plugin 'pgp': loaded successfully
> 00[LIB] plugin 'pem': loaded successfully
> 00[LIB] plugin 'fips-prf': loaded successfully
> 00[LIB] plugin 'gmp': loaded successfully
> 00[LIB] plugin 'xcbc': loaded successfully
> 00[LIB] plugin 'hmac': loaded successfully
> 00[LIB] plugin 'attr': loaded successfully
> 00[LIB] plugin 'kernel-pfkey': loaded successfully
> 00[KNL] listening on interfaces:
> 00[KNL]   eth0
> 00[KNL]   eth1
> 00[KNL]   vlan1
> 00[KNL]     192.168.1.119
> 00[KNL]   vlan2
> 00[KNL]   br0
> 00[KNL]     10.10.10.254
> 00[LIB] plugin 'kernel-netlink': loaded successfully
> 00[LIB] plugin 'resolve': loaded successfully
> 00[LIB] plugin 'socket-raw': loaded successfully
> 00[CFG] loading ca certificates from '/usr/local/etc/ipsec.d/cacerts'
> 00[CFG] loading aa certificates from '/usr/local/etc/ipsec.d/aacerts'
> 00[CFG] loading ocsp signer certificates from '/usr/local/etc/ipsec.d/ocspcerts'
> 00[CFG] loading attribute certificates from '/usr/local/etc/ipsec.d/acerts'
> 00[CFG] loading crls from '/usr/local/etc/ipsec.d/crls'
> 00[CFG] loading secrets from '/usr/local/etc/ipsec.secrets'
> 00[CFG]   loaded IKE secret for 419000000000010 at strongswan.org
> 00[CFG]   secret: 63:69:73:63:6f:63:69:73:63:6f
> | child 532 (Charon) has been killed by sig 11
> charon has died -- restart scheduled (5sec)
> charon refused to be started
> | Attempting to start charon...
> 00[DMN] Starting IKEv2 charon daemon (strongSwan 4.5.0)
> 00[LIB] plugin 'aes': loaded successfully
> 00[LIB] plugin 'des': loaded successfully
> 00[LIB] plugin 'sha1': loaded successfully
> 00[LIB] plugin 'sha2': loaded successfully
> 00[LIB] plugin 'md5': loaded successfully
> 00[LIB] plugin 'random': loaded successfully
> 00[LIB] plugin 'x509': loaded successfully
> 00[LIB] plugin 'revocation': loaded successfully
> 00[LIB] plugin 'pubkey': loaded successfully
> 00[LIB] plugin 'pkcs1': loaded successfully
> 00[LIB] plugin 'pgp': loaded successfully
> 00[LIB] plugin 'pem': loaded successfully
> 00[LIB] plugin 'fips-prf': loaded successfully
> 00[LIB] plugin 'gmp': loaded successfully
> 00[LIB] plugin 'xcbc': loaded successfully
> 00[LIB] plugin 'hmac': loaded successfully
> 00[LIB] plugin 'attr': loaded successfully
> 00[LIB] plugin 'kernel-pfkey': loaded successfully
> 00[KNL] listening on interfaces:
> 00[KNL]   eth0
> 00[KNL]   eth1
> 00[KNL]   vlan1
> 00[KNL]     192.168.1.119
> 00[KNL]   vlan2
> 00[KNL]   br0
> 00[KNL]     10.10.10.254
> 00[LIB] plugin 'kernel-netlink': loaded successfully
> 00[LIB] plugin 'resolve': loaded successfully
> 00[LIB] plugin 'socket-raw': loaded successfully
> 00[CFG] loading ca certificates from '/usr/local/etc/ipsec.d/cacerts'
> 00[CFG] loading aa certificates from '/usr/local/etc/ipsec.d/aacerts'
> 00[CFG] loading ocsp signer certificates from '/usr/local/etc/ipsec.d/ocspcerts'
> 00[CFG] loading attribute certificates from '/usr/local/etc/ipsec.d/acerts'
> 00[CFG] loading crls from '/usr/local/etc/ipsec.d/crls'
> 00[CFG] loading secrets from '/usr/local/etc/ipsec.secrets'
> 00[CFG]   loaded IKE secret for 419000000000010 at strongswan.org
> 00[CFG]   secret: 63:69:73:63:6f:63:69:73:63:6f
> | child 651 (Charon) has been killed by sig 11
> charon has died -- restart scheduled (5sec)
> charon refused to be started
> | Attempting to start charon...
> 00[DMN] Starting IKEv2 charon daemon (strongSwan 4.5.0)
> 00[LIB] plugin 'aes': loaded successfully
> 00[LIB] plugin 'des': loaded successfully
> 00[LIB] plugin 'sha1': loaded successfully
> 00[LIB] plugin 'sha2': loaded successfully
> 00[LIB] plugin 'md5': loaded successfully
> 00[LIB] plugin 'random': loaded successfully
> 00[LIB] plugin 'x509': loaded successfully
> 00[LIB] plugin 'revocation': loaded successfully
> 00[LIB] plugin 'pubkey': loaded successfully
> 00[LIB] plugin 'pkcs1': loaded successfully
> 00[LIB] plugin 'pgp': loaded successfully
> 00[LIB] plugin 'pem': loaded successfully
> 00[LIB] plugin 'fips-prf': loaded successfully
> 00[LIB] plugin 'gmp': loaded successfully
> 00[LIB] plugin 'xcbc': loaded successfully
> 00[LIB] plugin 'hmac': loaded successfully
> 00[LIB] plugin 'attr': loaded successfully
> 00[LIB] plugin 'kernel-pfkey': loaded successfully
> 00[KNL] listening on interfaces:
> 00[KNL]   eth0
> 00[KNL]   eth1
> 00[KNL]   vlan1
> 00[KNL]     192.168.1.119
> 00[KNL]   vlan2
> 00[KNL]   br0
> 00[KNL]     10.10.10.254
> 00[LIB] plugin 'kernel-netlink': loaded successfully
> 00[LIB] plugin 'resolve': loaded successfully
> 00[LIB] plugin 'socket-raw': loaded successfully
> 00[CFG] loading ca certificates from '/usr/local/etc/ipsec.d/cacerts'
> 00[CFG] loading aa certificates from '/usr/local/etc/ipsec.d/aacerts'
> 00[CFG] loading ocsp signer certificates from '/usr/local/etc/ipsec.d/ocspcerts'
> 00[CFG] loading attribute certificates from '/usr/local/etc/ipsec.d/acerts'
> 00[CFG] loading crls from '/usr/local/etc/ipsec.d/crls'
> 00[CFG] loading secrets from '/usr/local/etc/ipsec.secrets'
> 00[CFG]   loaded IKE secret for 419000000000010 at strongswan.org
> 00[CFG]   secret: 63:69:73:63:6f:63:69:73:63:6f
> | child 770 (Charon) has been killed by sig 11
> charon has died -- restart scheduled (5sec)
> charon refused to be started
> | Attempting to start charon...
> 00[DMN] Starting IKEv2 charon daemon (strongSwan 4.5.0)
> 00[LIB] plugin 'aes': loaded successfully
> 00[LIB] plugin 'des': loaded successfully
> 00[LIB] plugin 'sha1': loaded successfully
> 00[LIB] plugin 'sha2': loaded successfully
> 00[LIB] plugin 'md5': loaded successfully
> 00[LIB] plugin 'random': loaded successfully
> 00[LIB] plugin 'x509': loaded successfully
> 00[LIB] plugin 'revocation': loaded successfully
> 00[LIB] plugin 'pubkey': loaded successfully
> 00[LIB] plugin 'pkcs1': loaded successfully
> 00[LIB] plugin 'pgp': loaded successfully
> 00[LIB] plugin 'pem': loaded successfully
> 00[LIB] plugin 'fips-prf': loaded successfully
> 00[LIB] plugin 'gmp': loaded successfully
> 00[LIB] plugin 'xcbc': loaded successfully
> 00[LIB] plugin 'hmac': loaded successfully
> 00[LIB] plugin 'attr': loaded successfully
> 00[LIB] plugin 'kernel-pfkey': loaded successfully
> 00[KNL] listening on interfaces:
> 00[KNL]   eth0
> 00[KNL]   eth1
> 00[KNL]   vlan1
> 00[KNL]     192.168.1.119
> 00[KNL]   vlan2
> 00[KNL]   br0
> 00[KNL]     10.10.10.254
> 00[LIB] plugin 'kernel-netlink': loaded successfully
> 00[LIB] plugin 'resolve': loaded successfully
> 00[LIB] plugin 'socket-raw': loaded successfully
> 00[CFG] loading ca certificates from '/usr/local/etc/ipsec.d/cacerts'
> 00[CFG] loading aa certificates from '/usr/local/etc/ipsec.d/aacerts'
> 00[CFG] loading ocsp signer certificates from '/usr/local/etc/ipsec.d/ocspcerts'
> 00[CFG] loading attribute certificates from '/usr/local/etc/ipsec.d/acerts'
> 00[CFG] loading crls from '/usr/local/etc/ipsec.d/crls'
> 00[CFG] loading secrets from '/usr/local/etc/ipsec.secrets'
> 00[CFG]   loaded IKE secret for 419000000000010 at strongswan.org
> 00[CFG]   secret: 63:69:73:63:6f:63:69:73:63:6f
> | child 889 (Charon) has been killed by sig 11
> charon has died -- restart scheduled (5sec)
> charon refused to be started
> | Attempting to start charon...
> 00[DMN] Starting IKEv2 charon daemon (strongSwan 4.5.0)
> 00[LIB] plugin 'aes': loaded successfully
> 00[LIB] plugin 'des': loaded successfully
> 00[LIB] plugin 'sha1': loaded successfully
> 00[LIB] plugin 'sha2': loaded successfully
> 00[LIB] plugin 'md5': loaded successfully
> 00[LIB] plugin 'random': loaded successfully
> 00[LIB] plugin 'x509': loaded successfully
> 00[LIB] plugin 'revocation': loaded successfully
> 00[LIB] plugin 'pubkey': loaded successfully
> 00[LIB] plugin 'pkcs1': loaded successfully
> 00[LIB] plugin 'pgp': loaded successfully
> 00[LIB] plugin 'pem': loaded successfully
> 00[LIB] plugin 'fips-prf': loaded successfully
> 00[LIB] plugin 'gmp': loaded successfully
> 00[LIB] plugin 'xcbc': loaded successfully
> 00[LIB] plugin 'hmac': loaded successfully
> 00[LIB] plugin 'attr': loaded successfully
> 00[LIB] plugin 'kernel-pfkey': loaded successfully
> 00[KNL] listening on interfaces:
> 00[KNL]   eth0
> 00[KNL]   eth1
> 00[KNL]   vlan1
> 00[KNL]     192.168.1.119
> 00[KNL]   vlan2
> 00[KNL]   br0
> 00[KNL]     10.10.10.254
> 00[LIB] plugin 'kernel-netlink': loaded successfully
> 00[LIB] plugin 'resolve': loaded successfully
> 00[LIB] plugin 'socket-raw': loaded successfully
> 00[CFG] loading ca certificates from '/usr/local/etc/ipsec.d/cacerts'
> 00[CFG] loading aa certificates from '/usr/local/etc/ipsec.d/aacerts'
> 00[CFG] loading ocsp signer certificates from '/usr/local/etc/ipsec.d/ocspcerts'
> 00[CFG] loading attribute certificates from '/usr/local/etc/ipsec.d/acerts'
> 00[CFG] loading crls from '/usr/local/etc/ipsec.d/crls'
> 00[CFG] loading secrets from '/usr/local/etc/ipsec.secrets'
> 00[CFG]   loaded IKE secret for 419000000000010 at strongswan.org
> 00[CFG]   secret: 63:69:73:63:6f:63:69:73:63:6f
> | child 1008 (Charon) has been killed by sig 11
> charon has died -- restart scheduled (5sec)
> charon refused to be started
> | Attempting to start charon...
> 00[DMN] Starting IKEv2 charon daemon (strongSwan 4.5.0)
> 00[LIB] plugin 'aes': loaded successfully
> 00[LIB] plugin 'des': loaded successfully
> 00[LIB] plugin 'sha1': loaded successfully
> 00[LIB] plugin 'sha2': loaded successfully
> 00[LIB] plugin 'md5': loaded successfully
> 00[LIB] plugin 'random': loaded successfully
> 00[LIB] plugin 'x509': loaded successfully
> 00[LIB] plugin 'revocation': loaded successfully
> 00[LIB] plugin 'pubkey': loaded successfully
> 00[LIB] plugin 'pkcs1': loaded successfully
> 00[LIB] plugin 'pgp': loaded successfully
> 00[LIB] plugin 'pem': loaded successfully
> 00[LIB] plugin 'fips-prf': loaded successfully
> 00[LIB] plugin 'gmp': loaded successfully
> 00[LIB] plugin 'xcbc': loaded successfully
> 00[LIB] plugin 'hmac': loaded successfully
> 00[LIB] plugin 'attr': loaded successfully
> 00[LIB] plugin 'kernel-pfkey': loaded successfully
> 00[KNL] listening on interfaces:
> 00[KNL]   eth0
> 00[KNL]   eth1
> 00[KNL]   vlan1
> 00[KNL]     192.168.1.119
> 00[KNL]   vlan2
> 00[KNL]   br0
> 00[KNL]     10.10.10.254
> 00[LIB] plugin 'kernel-netlink': loaded successfully
> 00[LIB] plugin 'resolve': loaded successfully
> 00[LIB] plugin 'socket-raw': loaded successfully
> 00[CFG] loading ca certificates from '/usr/local/etc/ipsec.d/cacerts'
> 00[CFG] loading aa certificates from '/usr/local/etc/ipsec.d/aacerts'
> 00[CFG] loading ocsp signer certificates from '/usr/local/etc/ipsec.d/ocspcerts'
> 00[CFG] loading attribute certificates from '/usr/local/etc/ipsec.d/acerts'
> 00[CFG] loading crls from '/usr/local/etc/ipsec.d/crls'
> 00[CFG] loading secrets from '/usr/local/etc/ipsec.secrets'
> 00[CFG]   loaded IKE secret for 419000000000010 at strongswan.org
> 00[CFG]   secret: 63:69:73:63:6f:63:69:73:63:6f
> | child 1127 (Charon) has been killed by sig 11
> charon has died -- restart scheduled (5sec)
> charon refused to be started
> | Attempting to start charon...
> 00[DMN] Starting IKEv2 charon daemon (strongSwan 4.5.0)
> 00[LIB] plugin 'aes': loaded successfully
> 00[LIB] plugin 'des': loaded successfully
> 00[LIB] plugin 'sha1': loaded successfully
> 00[LIB] plugin 'sha2': loaded successfully
> 00[LIB] plugin 'md5': loaded successfully
> 00[LIB] plugin 'random': loaded successfully
> 00[LIB] plugin 'x509': loaded successfully
> 00[LIB] plugin 'revocation': loaded successfully
> 00[LIB] plugin 'pubkey': loaded successfully
> 00[LIB] plugin 'pkcs1': loaded successfully
> 00[LIB] plugin 'pgp': loaded successfully
> 00[LIB] plugin 'pem': loaded successfully
> 00[LIB] plugin 'fips-prf': loaded successfully
> 00[LIB] plugin 'gmp': loaded successfully
> 00[LIB] plugin 'xcbc': loaded successfully
> 00[LIB] plugin 'hmac': loaded successfully
> 00[LIB] plugin 'attr': loaded successfully
> 00[LIB] plugin 'kernel-pfkey': loaded successfully
> 00[KNL] listening on interfaces:
> 00[KNL]   eth0
> 00[KNL]   eth1
> 00[KNL]   vlan1
> 00[KNL]     192.168.1.119
> 00[KNL]   vlan2
> 00[KNL]   br0
> 00[KNL]     10.10.10.254
> 00[LIB] plugin 'kernel-netlink': loaded successfully
> 00[LIB] plugin 'resolve': loaded successfully
> 00[LIB] plugin 'socket-raw': loaded successfully
> 00[CFG] loading ca certificates from '/usr/local/etc/ipsec.d/cacerts'
> 00[CFG] loading aa certificates from '/usr/local/etc/ipsec.d/aacerts'
> 00[CFG] loading ocsp signer certificates from '/usr/local/etc/ipsec.d/ocspcerts'
> 00[CFG] loading attribute certificates from '/usr/local/etc/ipsec.d/acerts'
> 00[CFG] loading crls from '/usr/local/etc/ipsec.d/crls'
> 00[CFG] loading secrets from '/usr/local/etc/ipsec.secrets'
> 00[CFG]   loaded IKE secret for 419000000000010 at strongswan.org
> 00[CFG]   secret: 63:69:73:63:6f:63:69:73:63:6f
> | child 1246 (Charon) has been killed by sig 11
> charon has died -- restart scheduled (5sec)
> charon refused to be started
> WARNING: cannot flush IPsec state/policy database
> ipsec starter stopped
> Aborted
> [admin at WL-00904c23002a /]$ ipsec start
> Starting strongSwan 4.5.0 IPsec [starter]...
> Aborted
> [admin at WL-00904c23002a /]$
>  
> 2012-05-03
> ------------------------------------------------
> Best wishes,
> Yuanji Shi


-- 
Anton [WARM-RIPE]
Stack ltd division head
tel. 8 (3822) 555-797



More information about the Users mailing list