[Vpn-help] I need help with remote ASN1DN checking

Peter Eisch peter at boku.net
Fri Sep 29 11:53:43 CDT 2006


Argh, clicked Send too early.  I should have continued in my previous note:

I then took the DN, verbatim, and copy/pasted that with the same result.  I
then referred back to my previous email, I see:

> Allow for asn1dn IDs to be manually entered in the Site Configuration.
> The DN must be an exact match for peer authentication to complete
> successfully. The delimiter used for the manually entered DNs may be
> forward slashes or commas.

Because there are commas in my DN string, does this mean that it doesn¹t get
parsed right?

peter

On 9/29/06 11:43 AM, "Peter Eisch" <peter at boku.net> wrote:

> I'm trying to make sure I understand how the ASN1DN field would look if I
> wanted to only talk to a specific server.
>  
> What kind of values is it looking for?  I tried copy/paste the subject out of
> the cert right into that field, but that didn't work.  What values and in what
> format is the client looking?
>  
> << : vendor id payload
> 
> ii : peer supports DPDv1
> 
> !! : gen_peerid failed. invalid responder id data 'C=US, ST=Minnesota,
> L=Minneapolis, O=Company, Inc., OU=Managed Services,
> CN=cow.company.com/emailAddress=peter.eisch at company.com'
> <mailto:CN=cow.company.com/emailAddress=peter.eisch at company.com'>
> 
>>> >> : notification payload
> 
> -> : send IKE packet to 10.1.101.26:500 ( 56 bytes )
> 
>  
> 
> peter
> 
> 
> _______________________________________________
> vpn-help mailing list
> vpn-help at lists.shrew.net
> http://lists.shrew.net/mailman/listinfo/vpn-help
> 


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.shrew.net/pipermail/vpn-help/attachments/20060929/9aadd38d/attachment-0002.html>


More information about the vpn-help mailing list