libreswan-3.25-4.8.el7_6.x86_64.rpm


Advertisement

Description

libreswan - IPsec implementation with IKEv1 and IKEv2 keying protocols

Property Value
Distribution CentOS 7
Repository CentOS x86_64
Package filename libreswan-3.25-4.8.el7_6.x86_64.rpm
Package name libreswan
Package version 3.25
Package release 4.8.el7_6
Package architecture x86_64
Package type rpm
Category System Environment/Daemons
Homepage https://libreswan.org/
License GPLv2
Maintainer -
Download size 1.36 MB
Installed size 4.73 MB
Libreswan is a free implementation of IPsec & IKE for Linux.  IPsec is
the Internet Protocol Security and uses strong cryptography to provide
both authentication and encryption services.  These services allow you
to build secure tunnels through untrusted networks.  Everything passing
through the untrusted net is encrypted by the ipsec gateway machine and
decrypted by the gateway at the other end of the tunnel.  The resulting
tunnel is a virtual private network or VPN.
This package contains the daemons and userland tools for setting up
Libreswan. It supports the NETKEY/XFRM IPsec kernel stack that exists
in the default Linux kernel.
Libreswan also supports IKEv2 (RFC-7296) and Secure Labeling
Libreswan is based on Openswan-2.6.38 which in turn is based on FreeS/WAN-2.04

Alternatives

Package Version Architecture Repository
libreswan-3.25-8.1.el7_7.x86_64.rpm 3.25 x86_64 CentOS Updates
libreswan - - -

Requires

Name Value
/usr/bin/python -
bash -
coreutils -
fipscheck(x86-64) -
iproute >= 2.6.8
libaudit.so.1()(64bit) -
libc.so.6(GLIBC_2.14)(64bit) -
libcap-ng.so.0()(64bit) -
libcrypt.so.1()(64bit) -
libcrypt.so.1(GLIBC_2.2.5)(64bit) -
libcurl.so.4()(64bit) -
libevent-2.0.so.5()(64bit) -
libevent_pthreads-2.0.so.5()(64bit) -
libfipscheck.so.1()(64bit) -
liblber-2.4.so.2()(64bit) -
libldap-2.4.so.2()(64bit) -
libldns.so.1()(64bit) -
libnspr4.so()(64bit) -
libnss3.so()(64bit) -
libnss3.so(NSS_3.10)(64bit) -
libnss3.so(NSS_3.11.7)(64bit) -
libnss3.so(NSS_3.12)(64bit) -
libnss3.so(NSS_3.12.3)(64bit) -
libnss3.so(NSS_3.15)(64bit) -
libnss3.so(NSS_3.15.4)(64bit) -
libnss3.so(NSS_3.18)(64bit) -
libnss3.so(NSS_3.2)(64bit) -
libnss3.so(NSS_3.3)(64bit) -
libnss3.so(NSS_3.4)(64bit) -
libnss3.so(NSS_3.5)(64bit) -
libnss3.so(NSS_3.7)(64bit) -
libnss3.so(NSS_3.8)(64bit) -
libnss3.so(NSS_3.9)(64bit) -
libpam.so.0()(64bit) -
libpam.so.0(LIBPAM_1.0)(64bit) -
libpthread.so.0()(64bit) -
libpthread.so.0(GLIBC_2.2.5)(64bit) -
libpthread.so.0(GLIBC_2.3.2)(64bit) -
libpthread.so.0(GLIBC_2.3.4)(64bit) -
librt.so.1()(64bit) -
librt.so.1(GLIBC_2.2.5)(64bit) -
libseccomp.so.2()(64bit) -
libselinux.so.1()(64bit) -
libsmime3.so()(64bit) -
libsmime3.so(NSS_3.2)(64bit) -
libsmime3.so(NSS_3.3)(64bit) -
libsmime3.so(NSS_3.4)(64bit) -
libsmime3.so(NSS_3.9.3)(64bit) -
libsystemd.so.0()(64bit) -
libsystemd.so.0(LIBSYSTEMD_209)(64bit) -
libunbound.so.2()(64bit) -
nss >= 3.36.0-7.1
nss-softokn -
nss-tools -
rtld(GNU_HASH) -
systemd -
unbound-libs >= 1.6.6

Provides

Name Value
config(libreswan) = 3.25-4.8.el7_6
libreswan = 3.25-4.8.el7_6
libreswan(x86-64) = 3.25-4.8.el7_6
openswan = 3.25-4.8.el7_6
openswan-doc = 3.25-4.8.el7_6

Conflicts

Name Value
openswan < 3.25-4.8.el7_6

Obsoletes

Name Value
openswan < 3.25-4.8.el7_6

Download

Type URL
Mirror mirror.centos.org
Binary Package libreswan-3.25-4.8.el7_6.x86_64.rpm
Source Package libreswan-3.25-4.8.el7_6.src.rpm

Install Howto

Install libreswan rpm package:

# yum install libreswan

Files

Path
/etc/ipsec.conf
/etc/ipsec.secrets
/etc/ipsec.d/
/etc/ipsec.d/policies/block
/etc/ipsec.d/policies/clear
/etc/ipsec.d/policies/clear-or-private
/etc/ipsec.d/policies/portexcludes.conf
/etc/ipsec.d/policies/private
/etc/ipsec.d/policies/private-or-clear
/etc/pam.d/pluto
/etc/prelink.conf.d/libreswan-fips.conf
/usr/lib/systemd/system/ipsec.service
/usr/lib64/fipscheck/pluto.hmac
/usr/libexec/ipsec/_import_crl
/usr/libexec/ipsec/_keycensor
/usr/libexec/ipsec/_plutorun
/usr/libexec/ipsec/_secretcensor
/usr/libexec/ipsec/_stackmanager
/usr/libexec/ipsec/_unbound-hook
/usr/libexec/ipsec/_updown
/usr/libexec/ipsec/_updown.klips
/usr/libexec/ipsec/_updown.netkey
/usr/libexec/ipsec/addconn
/usr/libexec/ipsec/algparse
/usr/libexec/ipsec/auto
/usr/libexec/ipsec/barf
/usr/libexec/ipsec/cavp
/usr/libexec/ipsec/enumcheck
/usr/libexec/ipsec/eroute
/usr/libexec/ipsec/klipsdebug
/usr/libexec/ipsec/look
/usr/libexec/ipsec/newhostkey
/usr/libexec/ipsec/pf_key
/usr/libexec/ipsec/pluto
/usr/libexec/ipsec/readwriteconf
/usr/libexec/ipsec/rsasigkey
/usr/libexec/ipsec/setup
/usr/libexec/ipsec/show
/usr/libexec/ipsec/showhostkey
/usr/libexec/ipsec/spi
/usr/libexec/ipsec/spigrp
/usr/libexec/ipsec/tncfg
/usr/libexec/ipsec/verify
/usr/libexec/ipsec/whack
/usr/sbin/ipsec
/usr/share/doc/libreswan-3.25/CHANGES
/usr/share/doc/libreswan-3.25/CHANGES.freeswan.pluto
/usr/share/doc/libreswan-3.25/CHANGES.openswan
/usr/share/doc/libreswan-3.25/COPYING
/usr/share/doc/libreswan-3.25/CREDITS
/usr/share/doc/libreswan-3.25/CREDITS.freeswan
/usr/share/doc/libreswan-3.25/CREDITS.openswan
/usr/share/doc/libreswan-3.25/LICENSE
/usr/share/doc/libreswan-3.25/PlutoFlow.png
/usr/share/doc/libreswan-3.25/PlutoFlow.svg
/usr/share/doc/libreswan-3.25/ProgrammingConventions.txt
/usr/share/doc/libreswan-3.25/README.IANA-PEN
/usr/share/doc/libreswan-3.25/README.KLIPS
/usr/share/doc/libreswan-3.25/README.OCF
/usr/share/doc/libreswan-3.25/README.XAUTH
/usr/share/doc/libreswan-3.25/README.labeledipsec
/usr/share/doc/libreswan-3.25/README.md
/usr/share/doc/libreswan-3.25/README.nss
/usr/share/doc/libreswan-3.25/README.rfcs
/usr/share/doc/libreswan-3.25/README.x509
/usr/share/doc/libreswan-3.25/ipsecsaref.png
/usr/share/doc/libreswan-3.25/l2tp-overhead.txt
/usr/share/doc/libreswan-3.25/libreswan-sysctl.conf
/usr/share/doc/libreswan-3.25/nss-howto.txt
/usr/share/doc/libreswan-3.25/pluto-internals.txt
/usr/share/doc/libreswan-3.25/win2k-notes.txt
/usr/share/doc/libreswan-3.25/windows-cross-compile.txt
/usr/share/doc/libreswan-3.25/examples/hub-spoke.conf
/usr/share/doc/libreswan-3.25/examples/ipv6.conf
/usr/share/doc/libreswan-3.25/examples/l2tp-cert.conf
/usr/share/doc/libreswan-3.25/examples/l2tp-psk.conf
/usr/share/doc/libreswan-3.25/examples/linux-linux.conf
/usr/share/doc/libreswan-3.25/examples/mast-l2tp-psk.conf
/usr/share/doc/libreswan-3.25/examples/oe-authnull.conf
/usr/share/doc/libreswan-3.25/examples/oe-dnssec-client.conf
/usr/share/doc/libreswan-3.25/examples/oe-dnssec-server.conf
/usr/share/doc/libreswan-3.25/examples/oe-exclude-dns.conf
/usr/share/doc/libreswan-3.25/examples/oe-letsencrypt-README.txt
/usr/share/doc/libreswan-3.25/examples/oe-letsencrypt-client.conf
/usr/share/doc/libreswan-3.25/examples/oe-letsencrypt-server.conf
/usr/share/doc/libreswan-3.25/examples/oe-upgrade-authnull.conf
/usr/share/doc/libreswan-3.25/examples/sysctl.conf
/usr/share/doc/libreswan-3.25/examples/xauth.conf
/usr/share/doc/libreswan-3.25/opportunistic-v1.historic/opportunism-spec.txt
/usr/share/doc/libreswan-3.25/opportunistic-v1.historic/opportunism.nr
/usr/share/man/man5/ipsec.conf.5.gz
/usr/share/man/man5/ipsec.secrets.5.gz
/usr/share/man/man5/ipsec_eroute.5.gz
/usr/share/man/man5/ipsec_klipsdebug.5.gz
/usr/share/man/man5/ipsec_pf_key.5.gz
/usr/share/man/man5/ipsec_spi.5.gz
/usr/share/man/man5/ipsec_spigrp.5.gz
/usr/share/man/man5/ipsec_tncfg.5.gz
/usr/share/man/man5/ipsec_trap_count.5.gz
/usr/share/man/man5/ipsec_trap_sendcount.5.gz
/usr/share/man/man5/ipsec_version.5.gz
/usr/share/man/man8/ipsec.8.gz
/usr/share/man/man8/ipsec__import_crl.8.gz
/usr/share/man/man8/ipsec__keycensor.8.gz
/usr/share/man/man8/ipsec__plutorun.8.gz
/usr/share/man/man8/ipsec__secretcensor.8.gz
/usr/share/man/man8/ipsec__stackmanager.8.gz
/usr/share/man/man8/ipsec__unbound-hook.8.gz
/usr/share/man/man8/ipsec__updown.8.gz
/usr/share/man/man8/ipsec__updown.klips.8.gz
/usr/share/man/man8/ipsec__updown.netkey.8.gz
/usr/share/man/man8/ipsec_addconn.8.gz
/usr/share/man/man8/ipsec_auto.8.gz
/usr/share/man/man8/ipsec_barf.8.gz
/usr/share/man/man8/ipsec_checknss.8.gz
/usr/share/man/man8/ipsec_eroute.8.gz
/usr/share/man/man8/ipsec_import.8.gz
/usr/share/man/man8/ipsec_initnss.8.gz
/usr/share/man/man8/ipsec_klipsdebug.8.gz
/usr/share/man/man8/ipsec_look.8.gz
/usr/share/man/man8/ipsec_newhostkey.8.gz
/usr/share/man/man8/ipsec_pf_key.8.gz
/usr/share/man/man8/ipsec_pluto.8.gz
/usr/share/man/man8/ipsec_readwriteconf.8.gz
/usr/share/man/man8/ipsec_rsasigkey.8.gz
/usr/share/man/man8/ipsec_setup.8.gz
/usr/share/man/man8/ipsec_show.8.gz
/usr/share/man/man8/ipsec_showhostkey.8.gz
/usr/share/man/man8/ipsec_spi.8.gz
/usr/share/man/man8/ipsec_spigrp.8.gz
/usr/share/man/man8/ipsec_tncfg.8.gz
/usr/share/man/man8/ipsec_verify.8.gz
/usr/share/man/man8/ipsec_whack.8.gz
/usr/share/man/man8/pluto.8.gz
/var/log/pluto/peer/
/var/run/pluto/

Changelog

2019-05-09 - Paul Wouters <pwouters@redhat.com> - 3.25-4.8
- Resolves: rhbz#1708060 IKEv1 traffic interruption when responder deletes SAs 60 seconds before EVENT_SA_REPLACE [rhel-7.6.z]
2019-05-02 - Paul Wouters <pwouters@redhat.com> - 3.25-4.7
- Resolves: rhbz#1683577 Opportunistic IPsec instances of /32 groups or auto=start [updated for eclipsed handling]
2019-04-11 - Paul Wouters <pwouters@redhat.com> - 3.25-4.6
- Resolves: rhbz#1680483 libreswan using NSS IPsec profiles regresses when critical flags are set causing validation failure [rhel-7.6.z] [updated]
2019-03-31 - Paul Wouters <pwouters@redhat.com> - 3.25-4.5
- Resolves: rhbz#1683577 Opportunistic IPsec instances of /32 groups or auto=start that receive delete won't restart [rhel-7.6.z] [updated]
2019-02-26 - Paul Wouters <pwouters@redhat.com> - 3.25-4.4
- Resolves: rhbz#1683577 Opportunistic IPsec instances of /32 groups or auto=start that receive delete won't restart [rhel-7.6.z]
2019-02-25 - Paul Wouters <pwouters@redhat.com> - 3.25-4.3
- Resolves: rhbz#1680483 libreswan using NSS IPsec profiles regresses when critical flags are set causing validation failure [rhel-7.6.z]
2019-02-15 - Paul Wouters <pwouters@redhat.com> - 3.25-4.2
- Resolves: rhbz#1672921 - Libreswan crash upon receiving ISAKMP_NEXT_D with appended ISAKMP_NEXT_N [updated bugfix]
2019-01-11 - Paul Wouters <pwouters@redhat.com> - 3.25-4.1
- Resolves: rhbz#1665369 libreswan 3.25 in FIPS mode is incorrectly rejecting X.509 public keys that are >= 3072 bits [rhel-7.6.z]
2019-01-08 - Paul Wouters <pwouters@redhat.com> - 3.25-4
- Resolves: rhbz#1660536 libreswan assertion failed when OAKLEY_KEY_LENGTH is zero for IKE using AES_CBC
- Resolves: rhbz#1660544 config: recursive include check doesn't work
- Resolves: rhbz#1660542 Libreswan crash upon receiving ISAKMP_NEXT_D with appended ISAKMP_NEXT_N
- Resolves: rhbz#1664244 [abrt] [faf] libreswan: strncpy(): /usr/libexec/ipsec/pluto killed by 11
2018-12-03 - Paul Wouters <pwouters@redhat.com> - 3.25-3
- Resolves: rhbz#1655440 Unable to verify certificate with non-empty Extended Key Usage which does not include serverAuth or clientAuth

See Also

Package Description
librevenge-0.0.2-2.el7.i686.rpm A base library for writing document import filters
librevenge-0.0.2-2.el7.x86_64.rpm A base library for writing document import filters
librevenge-devel-0.0.2-2.el7.i686.rpm Development files for librevenge
librevenge-devel-0.0.2-2.el7.x86_64.rpm Development files for librevenge
librevenge-doc-0.0.2-2.el7.noarch.rpm Documentation of librevenge API
librpmem-1.5.1-2.1.el7.x86_64.rpm Remote Access to Persistent Memory library
librpmem-devel-1.5.1-2.1.el7.x86_64.rpm Development files for the Remote Access to Persistent Memory library
librsvg2-2.40.20-1.el7.i686.rpm An SVG library based on cairo
librsvg2-2.40.20-1.el7.x86_64.rpm An SVG library based on cairo
librsvg2-devel-2.40.20-1.el7.i686.rpm Libraries and include files for developing with librsvg
librsvg2-devel-2.40.20-1.el7.x86_64.rpm Libraries and include files for developing with librsvg
librsvg2-tools-2.40.20-1.el7.x86_64.rpm Extra tools for librsvg
libsamplerate-0.1.8-6.el7.i686.rpm Sample rate conversion library for audio data
libsamplerate-0.1.8-6.el7.x86_64.rpm Sample rate conversion library for audio data
libsamplerate-devel-0.1.8-6.el7.i686.rpm Development related files for libsamplerate
Advertisement
Advertisement