[Openswan Users] automatic X509 certificate xchange

farajian amin amin_o_city at yahoo.com
Tue Mar 9 03:57:57 EST 2010

Dear All,
I have created the 2 host certificates and their private keys , and also sign them by my CA certificate.
I have copied each side certificates to its related /etc/ipsec.d/certs/ and ca certs to /etc/ipsec.d/cacerts/.
Also i have copied their related private keys.

So Side A has its own cert , CA cert and its private key , and Side B has its own cert,CA cert and its private key,

i dont want to copy each side cert to the other side manually.
Can openswan request other side certificate and download it to the proper directory and then establish the connection? Is there any configuration script?

Thanks in Advance,

Amin Farajian


More information about the Users mailing list