zhangke5959 / strongswan

支持国密sm1,sm2,sm3,sm4算法的ipsec vpn。
Other
99 stars 74 forks source link

编译时指定了sysconfdir,但是启动charon时,还是读默认证书存放路径 #13

Closed hongruixing closed 3 years ago

hongruixing commented 3 years ago

sudo ./init_server.sh 00[DMN] signal of type SIGTERM received. Shutting down 00[DMN] Starting IKE charon daemon (strongSwan 5.7.0dr8, Linux 5.4.0-65-generic, x86_64) hongrui@hongrui-virtual-machine:/study/strongswan/testing/tests/gmalg$ 00[LIB] created TUN device: ipsec0 00[CFG] loading ca certificates from '/etc/ipsec.d/cacerts' 00[CFG] loaded ca certificate "C=cn, O=ilove, CN=VPN CA" from '/etc/ipsec.d/cacerts/ca.cert.pem' 00[CFG] loading aa certificates from '/etc/ipsec.d/aacerts' 00[CFG] loaded AA certificate "C=cn, O=ilove, CN=VPN Server" from '/etc/ipsec.d/aacerts/server.cert.pem' 00[LIB] building CRED_CERTIFICATE - X509 failed, tried 3 builders 00[CFG] loading AA certificate from '/etc/ipsec.d/aacerts/server.pub.key.pem' failed 00[ASN] unable to parse signature algorithm 00[LIB] building CRED_CERTIFICATE - X509 failed, tried 3 builders 00[CFG] loading AA certificate from '/etc/ipsec.d/aacerts/server.req.pem' failed 00[LIB] building CRED_CERTIFICATE - X509 failed, tried 3 builders 00[CFG] loading AA certificate from '/etc/ipsec.d/aacerts/server.key.pem' failed 00[CFG] loading ocsp signer certificates from '/etc/ipsec.d/ocspcerts' 00[CFG] loading attribute certificates from '/etc/ipsec.d/acerts' 00[CFG] loading crls from '/etc/ipsec.d/crls' 00[CFG] loading secrets from '/etc/ipsec.secrets' 00[CFG] opening triplet file /etc/ipsec.d/triplets.dat failed: No such file or directory 00[CFG] loaded 0 RADIUS server configurations

hongruixing commented 3 years ago

不指定编译出目录可以