[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

advice on cooking IPsec happy certificates sought




  For the IETF53 IPsec over wireless effort
(http://www.sandelman.ottawa.on.ca/SSW/ietf/secwlan)

  I made a pkix format certificate version of the FreeSWAN public key
for people can not take public keys from DNS. Some people complained that I
didn't have the right subjectAltName IP extension in the certificate. 

  The certificate was produced with a slightly hacked OpenSSL. If there 
people out there that know what incantations are necessary to make OpenSSL 
more IPsec happy, can you contact me privately? Thank you.

]       ON HUMILITY: to err is human. To moo, bovine.           |  firewalls  [
]   Michael Richardson, Sandelman Software Works, Ottawa, ON    |net architect[
] mcr@sandelman.ottawa.on.ca http://www.sandelman.ottawa.on.ca/ |device driver[
] panic("Just another NetBSD/notebook using, kernel hacking, security guy");  [