{"id":109,"date":"2009-02-27T13:02:00","date_gmt":"2009-02-27T11:02:00","guid":{"rendered":"https:\/\/vpn.univ-fcomte.fr\/?p=109"},"modified":"2009-02-27T13:02:00","modified_gmt":"2009-02-27T11:02:00","slug":"probleme-linux-certificat-cacertpem","status":"publish","type":"post","link":"https:\/\/vpn.univ-fcomte.fr\/?p=109","title":{"rendered":"Probl\u00e8me Linux : Certificat cacert.pem"},"content":{"rendered":"<p>Si vous avez le message suivant dans vos log <small><code>\/var\/log\/auth.log<\/code><\/small> :<br \/>\n<small><code>Feb 27 11:42:14 cri-29 pluto[6156]: \"ufc-vpn\" #1: issuer cacert not found<br \/>\n... pluto[6156]: \"ufc-vpn\" #1: X.509 certificate rejected<br \/>\n... pluto[6156]: \"ufc-vpn\" #1: no RSA public key known for '194.57.91.250'<\/code><\/small><br \/>\nC&rsquo;est que le fichier <small><code>\/etc\/ipsec.d\/cacerts\/cacert.pem<\/code><\/small> n&rsquo;est pas le bon ou qu&rsquo;il n&rsquo;est pas dans ce r\u00e9pertoire.<br \/>\nPour v\u00e9rifier le cacert :<br \/>\n<small><code>openssl x509 -in \/etc\/ipsec.d\/cacerts\/cacert.pem -noout -subject<\/code><\/small><br \/>\nqui vous donne :<br \/>\n<small><code>subject= \/C=FR\/ST=Franche-Comte\/L=Besancon\/O=UFC\/OU=CRI\/CN=CA-vpn\/<br \/>\n           emailAddress=vpn-master@univ-fcomte.fr<\/code><\/small><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Si vous avez le message suivant dans vos log \/var\/log\/auth.log : Feb 27 11:42:14 cri-29 pluto[6156]: \u00ab\u00a0ufc-vpn\u00a0\u00bb #1: issuer cacert not found &#8230; pluto[6156]: \u00ab\u00a0ufc-vpn\u00a0\u00bb #1: X.509 certificate rejected &#8230; pluto[6156]: \u00ab\u00a0ufc-vpn\u00a0\u00bb #1: no RSA public key known for &lsquo;194.57.91.250&rsquo; C&rsquo;est que le fichier \/etc\/ipsec.d\/cacerts\/cacert.pem n&rsquo;est pas le bon ou qu&rsquo;il n&rsquo;est pas dans ce [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20],"tags":[113,6,62,114],"class_list":["post-109","post","type-post","status-publish","format-standard","hentry","category-problemes-utilisateurs","tag-cacert","tag-linux","tag-probleme","tag-verification"],"_links":{"self":[{"href":"https:\/\/vpn.univ-fcomte.fr\/index.php?rest_route=\/wp\/v2\/posts\/109","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/vpn.univ-fcomte.fr\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/vpn.univ-fcomte.fr\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/vpn.univ-fcomte.fr\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/vpn.univ-fcomte.fr\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=109"}],"version-history":[{"count":0,"href":"https:\/\/vpn.univ-fcomte.fr\/index.php?rest_route=\/wp\/v2\/posts\/109\/revisions"}],"wp:attachment":[{"href":"https:\/\/vpn.univ-fcomte.fr\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=109"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/vpn.univ-fcomte.fr\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=109"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/vpn.univ-fcomte.fr\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=109"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}