From 16c2cd0244e65238fa1aa7fe85fe2636a2298a7c Mon Sep 17 00:00:00 2001 From: Wei Zhou Date: Thu, 5 Jan 2017 12:14:13 +0100 Subject: [PATCH] FIX issue on preshared key if we disable/enable remote access vpn Way to reproduce the issue (1) enable remote access vpn root@r-8349-VM:~# cat /etc/ipsec.d/ipsec.any.secrets : PSK "mVSx5KDXCPYX7X5DGb2W8yNW" (2) disable/enable vpn root@r-8349-VM:~# cat /etc/ipsec.d/ipsec.any.secrets : PSK "mVSx5KDXCPYX7X5DGb2W8yNW" : PSK "HeV3dHZpZXt4chhfvhx8D83C" Expected configuration: root@r-8349-VM:~# cat /etc/ipsec.d/ipsec.any.secrets : PSK "HeV3dHZpZXt4chhfvhx8D83C" --- systemvm/patches/debian/config/opt/cloud/bin/configure.py | 1 + 1 file changed, 1 insertion(+) diff --git a/systemvm/patches/debian/config/opt/cloud/bin/configure.py b/systemvm/patches/debian/config/opt/cloud/bin/configure.py index 5a2a9eda296..bdcfec9ade8 100755 --- a/systemvm/patches/debian/config/opt/cloud/bin/configure.py +++ b/systemvm/patches/debian/config/opt/cloud/bin/configure.py @@ -659,6 +659,7 @@ class CsRemoteAccessVpn(CsDataBag): secret = CsFile(vpnsecretfilte) + secret.empty() secret.addeq(": PSK \"%s\"" %psk) secret.commit()