This seems really simple but I can't figure out what's going wrong.  I'm
running in GPG mode and when I attempt to make a connection the logs say
as follows:

 Starting fwknopd main event loop.
: (stanza #1) SPA Packet from IP: [ip] received with access source match
: [ip] (stanza #1) Error creating fko context: Decryption operation failed
: [ip] (stanza #1) - GPG ERROR: Bad passphrase


I've double/triple checked I have the right p/w for the right key in
access.conf.  I also tried running in non-GPG mode just to check
everything is working that way and it is.

Finally I ran the daemon as follows: fwknopd -f -v -i eth0
The PIN entry dialogue (barebones, not even ncurses) comes up, I enter
the p/w and what d'ya know, the right rule is inserted into the firewall.

It seems the password isn't getting accepted when automated.  Once
again, any pointers?

Btw, annoying non-technical question and I know there's probably no
'objective' answer but how much more secure is the system when using gpg
keys (+HMAC digests), assuming a 'proper' implementation (whatever that
means!)?


------------------------------------------------------------------------------
Check out the vibrant tech community on one of the world's most
engaging tech sites, Slashdot.org! http://sdm.link/slashdot
_______________________________________________
Fwknop-discuss mailing list
Fwknop-discuss@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/fwknop-discuss

Reply via email to