Re: [2.0] Planning for 2.0.2 update

Michael G Beirne <[email protected]>
Newsgroups gmane.comp.security.ipcop.devel
Message-ID <[email protected]>
On 11/11/2011 2:57 PM, Olaf Westrik wrote:
> Expect a 2.0.2 release tomorrow (2011-11-12), to fix a problem 
> generating the CA certificates.
> Looks like ssl is now taking our 999999 days literally, creating a cert 
> which openswan is not at all happy with.
> 
> I'll either use 10 years, 15 years or a configurable length for the 
> certificate(s).
> 
> 
> Everything committed so far will be included in the update package.
> 
> 
> Olaf

Are there any plans to allow Distinguished Names to be entered into the
"Local ID" or "Remote ID" fields when creating an IPSec connection?

There is a radio button for "Peer is identified by ... DER_ASN1_DN in
remote ID", but a certificate is still needed for this to work and
clicking any other button, turns this one off.

Any plans to have a GUI to revoke certificates or even update the time
stamp on the CRL?

Keep up the good work!
Mike

------------------------------------------------------------------------------
RSA(R) Conference 2012
Save $700 by Nov 18
Register now
http://p.sf.net/sfu/rsa-sfdev2dev1
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.