[Vpn-help] Fwd: vpn-release-1.1 communicate with racoon problem

Admin admin at shrew.net
Mon Nov 27 09:46:48 CST 2006


Forwarded on behalf of a helpful user. Thanks for the input Hernan!

> ------------------------------------------------------------------------
> 
> Subject: Re: [Vpn-help] Fwd: vpn-release-1.1 communicate with racoon problem
> From: Hernan G Manavella
> 
> Hello Zhao,
>         I think that your only problem is the CRL expiration date. If 
> you have created your own CA, the solution is re-create the CRL with a 
> command like that: "openssl ca -gencrl -out crl.pem" and then copy the 
> new file crl.pem in /etc/racoon/certs with the same name that the old 
> file has. Then restart racoon.
>         Bye.
> 
>                                Hernán G. Manavella
>                                Area Tecnología - División Sistemas
>                                La Segunda Coop. Ltda. de Seguros Generales
>                                Tel: +54 341 4201000 (int. 616)
>                                www.lasegunda.com.ar
> 
> 
> From: *Zhao Tongyi*
> Subject: Re: [Vpn-help] vpn-release-1.1 communicate with racoon problem
> 
> i have captured the esp packets from my linux box ,so I think iptables 
> work is fine and not blocked the esp packets,now my  question is I don't 
> know if ipsec-tools unencapsulation incoming esp packets and forward 
> others ethernet card.
> 
> thanks
> 



More information about the vpn-help mailing list