[strongSwan] loading private key file is failing with charon, when trying to establish IPsec tunnel with certifiactes.

bhargav p bhargav.1226 at gmail.com
Mon Jun 3 11:44:46 CEST 2013


Hi Andreas,

I am coying the  defaultPrivateKey1.pem to  defaultPrivateKey.pem in the
/etc/ipsec/* directory.

/etc/ipsec.secret file
# //etc/ipsec.secrets
#  IPSec Pre-Shared-Key file

 : RSA "/etc/ipsec/certs/ipsec.d//private/defaultPrivateKey.pem"

-Bhargav

On Mon, Jun 3, 2013 at 3:09 PM, Andreas Steffen <
andreas.steffen at strongswan.org> wrote:

> Did you either rename defaultPrivateKey1.pem to defaultPrivateKey.pem
> or as an alternative did you adapt the private key filename in
> /etc/ipsec.secrets ?
>
> Andreas
>
> On 06/03/2013 09:20 AM, bhargav p wrote:
> >
> > Hi Andreas,
> >
> >
> > I am converting my key file with below command:
> >
> >  openssl pkcs8 -nocrypt -in defaultPrivateKey.pem -out
> > defaultPrivateKey1.pem
> >
> >
> > I am putting the new file in the /etc/ipsec/certs/ipsec.d/private, do
> > not know the reason why it is not converting.
> >
> >
> > Any thing in addition i need to do for converting pkcs8 private key to
> > pkcs1 .
> >
> ======================================================================
> Andreas Steffen                         andreas.steffen at strongswan.org
> strongSwan - the Open Source VPN Solution!          www.strongswan.org
> Institute for Internet Technologies and Applications
> University of Applied Sciences Rapperswil
> CH-8640 Rapperswil (Switzerland)
> ===========================================================[ITA-HSR]==
>
>


--
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20130603/331bcdb2/attachment.html>


More information about the Users mailing list