Re: [2.0] Planning for 2.0.2 update
Michael G Beirne <[email protected]>
| Newsgroups | gmane.comp.security.ipcop.devel |
|---|---|
| Message-ID | <[email protected]> |
On 11/11/2011 2:57 PM, Olaf Westrik wrote: > Expect a 2.0.2 release tomorrow (2011-11-12), to fix a problem > generating the CA certificates. > Looks like ssl is now taking our 999999 days literally, creating a cert > which openswan is not at all happy with. > > I'll either use 10 years, 15 years or a configurable length for the > certificate(s). > > > Everything committed so far will be included in the update package. > > > Olaf Are there any plans to allow Distinguished Names to be entered into the "Local ID" or "Remote ID" fields when creating an IPSec connection? There is a radio button for "Peer is identified by ... DER_ASN1_DN in remote ID", but a certificate is still needed for this to work and clicking any other button, turns this one off. Any plans to have a GUI to revoke certificates or even update the time stamp on the CRL? Keep up the good work! Mike ------------------------------------------------------------------------------ RSA(R) Conference 2012 Save $700 by Nov 18 Register now http://p.sf.net/sfu/rsa-sfdev2dev1