[strongSwan] Compiling 5.2.2 for CentOS troubles

Andreas Steffen andreas.steffen at strongswan.org
Thu Mar 5 19:53:00 CET 2015


Hi Aaron,

the errors from parsing /etc/ipsec.conf are definitively caused
by deprecated FreeS/WAN or Openswan keywords. Please clean up
your configuration files.

Regards

Andreas

On 05.03.2015 18:15, Aaron Roquena wrote:
> No, it's strongswan from the epel-release repo, v5.2.0. The VPN
> successfully connects with the config files that don't work with the
> 5.2.2 I compile from source.
>
>
> Aaron
>
> On Wed, Mar 4, 2015 at 6:03 PM, Randy Wyatt <rwwyatt01 at gmail.com
> <mailto:rwwyatt01 at gmail.com>> wrote:
>
>     By chance,  Did you have openswan installed?  Those keywords remind
>     me of the other SWAN package.
>
>     Regards,
>     Randy
>
>     On Wed, Mar 4, 2015 at 3:29 PM, Aaron Roquena <aroquena at motorola.com
>     <mailto:aroquena at motorola.com>> wrote:
>
>         I'm trying to install 5.2.2 from source since there's not an RPM
>         for CentOS 6 at the moment and experiencing problems. I try
>
>         ./configure --prefix=/usr --sysconfdir=/etc \
>         --enable-acert \
>         --enable-curl \
>         --enable-dhcp \
>         --enable-eap-gtc \
>         --enable-eap-identity \
>         --enable-eap-md5 \
>         --enable-eap-mschapv2 \
>         --enable-eap-peap \
>         --enable-eap-tls \
>         --enable-eap-ttls \
>         --enable-farp \
>         --enable-md4 \
>         --enable-openssl \
>         --enable-vici \
>         --enable-xauth-eap \
>         --enable-xauth-noauth \
>         --enable-xauth-pam \
>         --enable-cmd
>
>         and when I go to run  "ipsec starter", my old config files from
>         5.2.0 rpm don't work and the below warning pop up.  The configs
>         are for an IPSec VPN. The VPN doesn't connect. What am I missing?
>
>          > ipsec starter
>         Starting strongSwan 5.2.2 IPsec [starter]...
>         # deprecated keyword 'nat_traversal' in config setup
>         # unknown keyword 'oe'
>         # unknown keyword 'protostack'
>         # deprecated keyword 'virtual_private' in config setup
>         # unknown keyword 'phase2'
>         # unknown keyword 'phase2alg'
>         # unknown keyword 'rightsubnets'
>         ### 7 parsing errors (0 fatal) ###
>
>         Thanks for any help,
>
>         AR
>
>         _______________________________________________
>         Users mailing list
>         Users at lists.strongswan.org <mailto:Users at lists.strongswan.org>
>         https://lists.strongswan.org/mailman/listinfo/users
>
>
>
>
>     --
>     Randy W. Wyatt
>     rwwyatt01 at gmail.com <mailto:rwwyatt01 at gmail.com>
>     Home: 858-309-5303 <tel:858-309-5303>
>     Cell: 858-598-4421 <tel:858-598-4421>
>     Fax: 858-408-7554 <tel:858-408-7554>
>     **	
>
>
>
>
> _______________________________________________
> Users mailing list
> Users at lists.strongswan.org
> https://lists.strongswan.org/mailman/listinfo/users
>

-- 
======================================================================
Andreas Steffen                         andreas.steffen at strongswan.org
strongSwan - the Open Source VPN Solution!          www.strongswan.org
Institute for Internet Technologies and Applications
University of Applied Sciences Rapperswil
CH-8640 Rapperswil (Switzerland)
===========================================================[ITA-HSR]==

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4255 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://lists.strongswan.org/pipermail/users/attachments/20150305/6081ef7f/attachment-0001.bin>


More information about the Users mailing list