[Swan] Need debugging pointer between libreswan and ASA5550

Paul Wouters pwouters at redhat.com
Fri Mar 8 20:54:57 EET 2013


On Fri, 8 Mar 2013, T.J. Yang wrote:

>       I know there was an SElinux policy with include files that Tuomo ran into. You might want to run a test with SElinux in
>       permissive mode for that.
> 
> 
> My selinux indeed was at enforced mode(hmm, but his work with openwan),I have it set as disabled now and "auto=start" still didn't bring
> up the connection automatically.
> A manual startup still needed.
> 
> [root at mlab-centos6-01 ~]# grep ^SELINUX= /etc/selinux/config
> SELINUX=disabled

That does not mean it is disabled. Run "getenforce" instead.

> [root at mlab-centos6-01 ~]# ipsec version
> Linux Libreswan 3.0 (netkey) on 2.6.32-279.22.1.el6.x86_64

This might be fixed in the latest dr releases or git. I cannot tell what
version this is?

Paul


More information about the Swan mailing list