[Openswan dev] ID_DER_ASN1_DN change in 2.5.17, was Re: [Openswan Users] Openswan on Fedora 9

Tuomo Soini tis at foobar.fi
Wed Jun 11 01:51:16 EDT 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Tuomo Soini wrote:

| Hey. DN was NOT forced before.
|
| leftcert=mycert.pem
| leftid=192.0.2.5
|
| That DID work but it required as that id match cert's   data which is
| required anyway with cert authentication.

In fact I might add relaxing this requirement is BAD because all other
implementations require this and relaxin this requirement break
interoperability with others.

- --
Tuomo Soini <tis at foobar.fi>
Foobar Linux services
+358 40 5240030
Foobar Oy <http://foobar.fi/>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.5 (GNU/Linux)

iD8DBQFIT2fUTlrZKzwul1ERAnXLAJsE3fn7w6E8o7FBoZfCr5sDVCZlUwCfXqBW
h3ItNFBqaSLrGHKIZEuw2lE=
=IAUK
-----END PGP SIGNATURE-----


More information about the Dev mailing list