[Pkg-swan-devel] Bug#787810: Bug#787810: libstrongswan-standard-plugins not installed during dist-upgrade
Yves-Alexis Perez
corsac at debian.org
Fri Jun 5 13:43:35 UTC 2015
On Fri, Jun 05, 2015 at 12:31:46PM +0200, Daniel Pocock wrote:
> Package: libstrongswan-standard-plugins
> Version: 5.2.1-6
> Severity: serious
>
> I've marked this bug serious because it can lead to a loss of
> connectivity for remote users.
>
> The system was running fine with strongSwan on wheezy using ECDSA
>
> The system was upgraded to jessie using apt-get dist-upgrade
>
> After upgrade, the VPN would not start
>
> "ipsec up peer" would complain:
>
> no private key found for 'fromcert'
>
> Looking at the ipsec start logs in syslog, I observed the errors:
>
> building CRED_PRIVATE_KEY - ECDSA failed, tried 2 builders
> loading private key from 'hostKey.der' failed
> ...
> building CRED_CERTIFICATE - ANY failed, tried 1 builders
> loading certificate from 'hostCert.der' failed
>
> Installing the missing package and restarting ipsec resolved the issue:
>
> apt-get install libstrongswan-standard-plugins
> ipsec stop
> ipsec start
>
Hi,
libstrongswan (which is a dependency of the various charon daemons) as a
Recommends: on libstrongswan-standard-plugins so if you install
Recommends: I think it /should/ be the case.
Regards,
--
Yves-Alexis Perez
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 473 bytes
Desc: Digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-swan-devel/attachments/20150605/162cf494/attachment.sig>
More information about the Pkg-swan-devel
mailing list