[Pkg-swan-devel] Bug#787810: Bug#787810: libstrongswan-standard-plugins not installed during dist-upgrade

Yves-Alexis Perez corsac at debian.org
Fri Jun 5 13:43:35 UTC 2015


On Fri, Jun 05, 2015 at 12:31:46PM +0200, Daniel Pocock wrote:
> Package: libstrongswan-standard-plugins
> Version: 5.2.1-6
> Severity: serious
> 
> I've marked this bug serious because it can lead to a loss of
> connectivity for remote users.
> 
> The system was running fine with strongSwan on wheezy using ECDSA
> 
> The system was upgraded to jessie using apt-get dist-upgrade
> 
> After upgrade, the VPN would not start
> 
> "ipsec up peer" would complain:
> 
> no private key found for 'fromcert'
> 
> Looking at the ipsec start logs in syslog, I observed the errors:
> 
> building CRED_PRIVATE_KEY - ECDSA failed, tried 2 builders
>    loading private key from 'hostKey.der' failed
> ...
> building CRED_CERTIFICATE - ANY failed, tried 1 builders
>    loading certificate from 'hostCert.der' failed
> 
> Installing the missing package and restarting ipsec resolved the issue:
> 
>   apt-get install libstrongswan-standard-plugins
>   ipsec stop
>   ipsec start
> 
Hi,

libstrongswan (which is a dependency of the various charon daemons) as a
Recommends: on libstrongswan-standard-plugins so if you install
Recommends: I think it /should/ be the case.

Regards,
-- 
Yves-Alexis Perez
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 473 bytes
Desc: Digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-swan-devel/attachments/20150605/162cf494/attachment.sig>


More information about the Pkg-swan-devel mailing list