Ubuntu 20.04
Followed all the steps (twice now).
- Created newhostkey on left and right.
- Create a .conf file
- Got the info from the left machine and put it in (see below)
- Got the info from the right machine and put it in (see below)
service ipsec --full-restart
ipsec auto --add next-zabbix; ipsec auto --up next-zabbix
- Got the errors below
133 "next-zabbix" #53: STATE_PARENT_I1: sent v2I1, expected v2R1
003 "next-zabbix" #53: Failed to find our RSA key
ipsec auto --add next-zabbix; ipsec auto --up next-zabbix
- Got the errors below
133 "next-zabbix" #53: STATE_PARENT_I1: sent v2I1, expected v2R1
003 "next-zabbix" #53: Failed to find our RSA key
And finally the config file.
Config File
cat /etc/ipsec.d/zabbix.conf
conn next-zabbix
left=next.dubclub.win
leftrsasigkey=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
right=zabbix.dubclub.win
rightrsasigkey=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
authby=rsasig
auto=start
What have I left out? Why can it not find it the private key? Why does it say (no private key)
root@next:~# ipsec whack --listpubkeys
000
000 List of Public Keys:
000
000 Jul 22 23:37:49 2022, 3744 RSA Key AwEAAbYK0 (no private key), until --- -- --:--:-- ---- ok (expires never)
000 0?? '(none)'