search for: glennpierc

Displaying 20 results from an estimated 20 matches for "glennpierc".

Did you mean: glennpierce
2016 Apr 01
2
Libreswan PEM format
...bb82514 } # do not change the indenting of that "}" On 1 April 2016 at 18:04, Eero Volotinen <eero.volotinen at iki.fi> wrote: > You must define connection address and key in ipsec.secrets. > > -- > Eero > > > 2016-04-01 19:38 GMT+03:00 Glenn Pierce <glennpierce at gmail.com>: > >> Just trying to follow the instructions here >> >> https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/html/Security_Guide/sec-Securing_Virtual_Private_Networks.html >> >> I don't think I am doing anything special. &gt...
2016 Apr 01
5
Libreswan PEM format
...le to convert ? or is the an intermediate step I am missing as like I said not command I found seems to work. On 1 April 2016 at 14:35, Eero Volotinen <eero.volotinen at iki.fi> wrote: > It works, try googling for openssl pem conversion > 1.4.2016 4.32 ip. "Glenn Pierce" <glennpierce at gmail.com> kirjoitti: > >> I have tried >> openssl rsa -in bicester_left.pub -outform pem > bicester_left.pem >> >> I get >> unable to load Private Key >> 140372295030648:error:0906D06C:PEM routines:PEM_read_bio:no start >> line:pem_lib.c:701:E...
2016 Apr 01
2
Libreswan PEM format
...te2 also=tunnel On 1 April 2016 at 15:58, Eero Volotinen <eero.volotinen at iki.fi> wrote: > So you are using pkcs12 on centos: > > https://www.sslshopper.com/article-most-common-openssl-commands.html > -- > Eero > > 2016-04-01 17:44 GMT+03:00 Glenn Pierce <glennpierce at gmail.com>: > >> Sorry but I have looked for over two days. Trying every command I could >> find. >> >> There is obviously a misunderstanding somewhere. >> >> After generating a key pair with >> ipsec newhostkey --configdir /etc/ipsec.d --output /...
2016 Apr 01
2
Libreswan PEM format
...:PEM_read_bio:no start line:pem_lib.c:701:Expecting: ANY PRIVATE KEY On 1 April 2016 at 13:59, Eero Volotinen <eero.volotinen at iki.fi> wrote: > You can do any kind of format conversions with openssl commandline client. > > Eero > 1.4.2016 3.56 ip. "Glenn Pierce" <glennpierce at gmail.com> kirjoitti: > >> Hi I am trying to setup a libreswan vpn between centos 7 and a Mikrotik >> router. >> >> I am try to get the keys working. My problem is the Mikrotik router >> wants the key in PEM format >> >> How do I export the keys g...
2016 Apr 01
0
Libreswan PEM format
IPSec is very complex with certificates. try first with PSK authentication and then with certificates -- Eero 2016-04-01 20:21 GMT+03:00 Glenn Pierce <glennpierce at gmail.com>: > I generated according to the docs . Which produced > my server.secrets as below > > used the command > > ipsec newhostkey --configdir /etc/ipsec.d --output > /etc/ipsec.d/www.example.com.secrets > > > : RSA { > # RSA 3328 bits ***....
2016 Apr 01
0
Libreswan PEM format
You must define connection address and key in ipsec.secrets. -- Eero 2016-04-01 19:38 GMT+03:00 Glenn Pierce <glennpierce at gmail.com>: > Just trying to follow the instructions here > > https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7/html/Security_Guide/sec-Securing_Virtual_Private_Networks.html > > I don't think I am doing anything special. > > At the point wher...
2016 Apr 01
0
Libreswan PEM format
So you are using pkcs12 on centos: https://www.sslshopper.com/article-most-common-openssl-commands.html -- Eero 2016-04-01 17:44 GMT+03:00 Glenn Pierce <glennpierce at gmail.com>: > Sorry but I have looked for over two days. Trying every command I could > find. > > There is obviously a misunderstanding somewhere. > > After generating a key pair with > ipsec newhostkey --configdir /etc/ipsec.d --output /etc/ipsec.d/my.secrets > >...
2016 Mar 21
2
IPSec multiple VPN setups
Err. Sounds like security nightmare. 21.3.2016 7.47 ip. "Glenn Pierce" <glennpierce at gmail.com> kirjoitti: > Will ask my boss :) We are hosted on memset so not so easy to update > > Thanks > > On 21 March 2016 at 17:36, Eero Volotinen <eero.volotinen at iki.fi> wrote: > > Centos 5 is still soon end of life. Using it as ipsec gateway is .. > &gt...
2016 Mar 21
3
IPSec multiple VPN setups
...gt; > > On Mon, Mar 21, 2016 at 1:08 PM, Eero Volotinen <eero.volotinen at iki.fi> > > wrote: > > > >> Yes you can. Please use newer version of centos and strong/openswan. > >> > >> Eero > >> 21.3.2016 7.05 ip. "Glenn Pierce" <glennpierce at gmail.com> kirjoitti: > >> > >> > Hi I hope someone can answer something I'm sure is quite basic. > >> > > >> > I am following the instructions at > >> > https://www.centos.org/docs/5/html/Deployment_Guide-en-US/ch-vpn.html > &g...
2016 Apr 01
2
Libreswan PEM format
Hi I am trying to setup a libreswan vpn between centos 7 and a Mikrotik router. I am try to get the keys working. My problem is the Mikrotik router wants the key in PEM format How do I export the keys generated with ipsec newhostkey into PEM format ? Thanks
2016 Apr 01
0
Libreswan PEM format
It works, try googling for openssl pem conversion 1.4.2016 4.32 ip. "Glenn Pierce" <glennpierce at gmail.com> kirjoitti: > I have tried > openssl rsa -in bicester_left.pub -outform pem > bicester_left.pem > > I get > unable to load Private Key > 140372295030648:error:0906D06C:PEM routines:PEM_read_bio:no start > line:pem_lib.c:701:Expecting: ANY PRIVATE KEY > &...
2016 Mar 21
5
IPSec multiple VPN setups
...EL5 and move to a newer platform (preferably EL7 with Libreswan). On Mon, Mar 21, 2016 at 1:08 PM, Eero Volotinen <eero.volotinen at iki.fi> wrote: > Yes you can. Please use newer version of centos and strong/openswan. > > Eero > 21.3.2016 7.05 ip. "Glenn Pierce" <glennpierce at gmail.com> kirjoitti: > > > Hi I hope someone can answer something I'm sure is quite basic. > > > > I am following the instructions at > > https://www.centos.org/docs/5/html/Deployment_Guide-en-US/ch-vpn.html > > On setting up a VPN > > > > Th...
2016 Mar 21
0
IPSec multiple VPN setups
...age----- From: "Eero Volotinen" <eero.volotinen at iki.fi> Sent: ?21/?03/?2016 17:51 To: "CentOS mailing list" <centos at centos.org> Subject: Re: [CentOS] IPSec multiple VPN setups Err. Sounds like security nightmare. 21.3.2016 7.47 ip. "Glenn Pierce" <glennpierce at gmail.com> kirjoitti: > Will ask my boss :) We are hosted on memset so not so easy to update > > Thanks > > On 21 March 2016 at 17:36, Eero Volotinen <eero.volotinen at iki.fi> wrote: > > Centos 5 is still soon end of life. Using it as ipsec gateway is .. > &gt...
2016 Mar 21
2
IPSec multiple VPN setups
Hi I hope someone can answer something I'm sure is quite basic. I am following the instructions at https://www.centos.org/docs/5/html/Deployment_Guide-en-US/ch-vpn.html On setting up a VPN The part I am having trouble with is when it show the /etc/racoon/racoon.conf file. But it doesn't say whay you have to do with this file. When I bring up my connection ifup bicester I get RTNETLINK
2016 Mar 21
0
IPSec multiple VPN setups
Yes you can. Please use newer version of centos and strong/openswan. Eero 21.3.2016 7.05 ip. "Glenn Pierce" <glennpierce at gmail.com> kirjoitti: > Hi I hope someone can answer something I'm sure is quite basic. > > I am following the instructions at > https://www.centos.org/docs/5/html/Deployment_Guide-en-US/ch-vpn.html > On setting up a VPN > > The part I am having trouble with is when...
2016 Apr 01
0
Libreswan PEM format
You can do any kind of format conversions with openssl commandline client. Eero 1.4.2016 3.56 ip. "Glenn Pierce" <glennpierce at gmail.com> kirjoitti: > Hi I am trying to setup a libreswan vpn between centos 7 and a Mikrotik > router. > > I am try to get the keys working. My problem is the Mikrotik router > wants the key in PEM format > > How do I export the keys generated with ipsec newhostkey &...
2016 Mar 21
0
IPSec multiple VPN setups
...ps://wiki.debian.org/IPsec > > > On Mon, Mar 21, 2016 at 1:08 PM, Eero Volotinen <eero.volotinen at iki.fi> > wrote: > >> Yes you can. Please use newer version of centos and strong/openswan. >> >> Eero >> 21.3.2016 7.05 ip. "Glenn Pierce" <glennpierce at gmail.com> kirjoitti: >> >> > Hi I hope someone can answer something I'm sure is quite basic. >> > >> > I am following the instructions at >> > https://www.centos.org/docs/5/html/Deployment_Guide-en-US/ch-vpn.html >> > On setting up a VP...
2016 Mar 21
0
IPSec multiple VPN setups
...r 21, 2016 at 1:08 PM, Eero Volotinen <eero.volotinen at iki.fi> >> > wrote: >> > >> >> Yes you can. Please use newer version of centos and strong/openswan. >> >> >> >> Eero >> >> 21.3.2016 7.05 ip. "Glenn Pierce" <glennpierce at gmail.com> kirjoitti: >> >> >> >> > Hi I hope someone can answer something I'm sure is quite basic. >> >> > >> >> > I am following the instructions at >> >> > https://www.centos.org/docs/5/html/Deployment_Guide-en-US...
2016 Mar 21
0
IPSec multiple VPN setups
Yes reinstall. I get you have to purchase a new instance for a time to move over. -----Original Message----- From: "Eero Volotinen" <eero.volotinen at iki.fi> Sent: ?21/?03/?2016 18:38 To: "CentOS mailing list" <centos at centos.org> Subject: Re: [CentOS] IPSec multiple VPN setups err. upgrades? You mean reinstall? As upgrading between major releases are not
2016 Mar 21
3
IPSec multiple VPN setups
I asked about upgrading once and got no reply. Does anyone have experience of having a hosted centos upgraded on a virtual server. Would you usually have to pay for a transition instance ? -----Original Message----- From: "Eero Volotinen" <eero.volotinen at iki.fi> Sent: ?21/?03/?2016 18:11 To: "CentOS mailing list" <centos at centos.org> Subject: Re: [CentOS]