On Fri, Jun 05, 2015 at 12:31:46PM +0200, Daniel Pocock wrote: > Package: libstrongswan-standard-plugins > Version: 5.2.1-6 > Severity: serious > > I've marked this bug serious because it can lead to a loss of > connectivity for remote users. > > The system was running fine with strongSwan on wheezy using ECDSA > > The system was upgraded to jessie using apt-get dist-upgrade > > After upgrade, the VPN would not start > > "ipsec up peer" would complain: > > no private key found for 'fromcert' > > Looking at the ipsec start logs in syslog, I observed the errors: > > building CRED_PRIVATE_KEY - ECDSA failed, tried 2 builders > loading private key from 'hostKey.der' failed > ... > building CRED_CERTIFICATE - ANY failed, tried 1 builders > loading certificate from 'hostCert.der' failed > > Installing the missing package and restarting ipsec resolved the issue: > > apt-get install libstrongswan-standard-plugins > ipsec stop > ipsec start > Hi,
libstrongswan (which is a dependency of the various charon daemons) as a Recommends: on libstrongswan-standard-plugins so if you install Recommends: I think it /should/ be the case. Regards, -- Yves-Alexis Perez
signature.asc
Description: Digital signature