[vpn-help] Shrewsoft ver 2.2.2 unable to verify remote peer certificate.

Alexis La Goutte alexis.lagoutte at gmail.com
Mon Sep 28 01:49:54 CDT 2015


Hi Guy,

if i remember, i don't work if you have all cert (public/private key) on
same file...

Regards,

On Fri, Sep 25, 2015 at 7:14 PM, <guyrich at ids4zos.com> wrote:

> I have shrewsoft ver 2.2.2 vpn client running on two win7 test systems.
> (road-warrior config)
> I'm trying to establish a vpn tunnel between a win7 system and a rhel 7
> vpn server.
> I'm using Mutual RSA + XAuth
> I've defined a .pem file that contains the win7 client cert
> w/public/private keys, and a .pem file that contains my self-signed CA
> cert. and then a .pem file that contains the server's "public" cert.
> All of the certs are in a single .pem file. However the authentication
> fails.
>
> The shrewsoft IKE service trace log contains the following:
>
> unable to get local issuer certificate(20) at depth 0
>
> subject /CN=VPNSRVR0
>
> unable to verify remote peer certificate.
>
> sending peer DELETE message.
>
> My question is: What am I doing wrong ??
>
> Thanks
>
> Guy
>
> _______________________________________________
> vpn-help mailing list
> vpn-help at lists.shrew.net
> https://lists.shrew.net/mailman/listinfo/vpn-help
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.shrew.net/pipermail/vpn-help/attachments/20150928/d93e1a4e/attachment.html>


More information about the vpn-help mailing list