Re: [strongSwan] Please help - Using strongSwan to connect to CheckPoint VPN-1

2010-03-05 Thread Dimitrios Siganos
Sucha Singh wrote: > Hi Andreas, > > Reviewing the above settings I added the following line to the ipsec.conf: > > ike=3des-sha1-md5-modp1024 > > I then get the following errors: > > 002 "test" #1: initiating Main Mode > 003 "test" #1: no IKE algorithms for this connection (check ike algorithm >

Re: [strongSwan] Certificates in cacerts directory

2010-03-05 Thread Andreas Steffen
ABULIUS, MUGUR (MUGUR) wrote: >> If rightca is specified then we only request certificates issued by rightca. >> Otherwise we send certificate requests for all CAs contained in >> /etc/ipsec.d/cacerts/ > > If "rightca=" is specified, then it is required that a certificate matching > the specifie

Re: [strongSwan] Certificates in cacerts directory

2010-03-05 Thread Daniel Mentz
ABULIUS, MUGUR (MUGUR) wrote: >> If rightca is specified then we only request certificates issued by rightca. >> Otherwise we send certificate requests for all CAs contained in >> /etc/ipsec.d/cacerts/ > > If "rightca=" is specified, then it is required that a certificate matching > the specifie

Re: [strongSwan] Certificates in cacerts directory

2010-03-05 Thread ABULIUS, MUGUR (MUGUR)
> If rightca is specified then we only request certificates issued by rightca. > Otherwise we send certificate requests for all CAs contained in > /etc/ipsec.d/cacerts/ If "rightca=" is specified, then it is required that a certificate matching the specified DN to be present locally in "/etc/ips