[strongSwan-dev] Help

Lukasz Grzelak lukasz.grzelak at ericsson.com
Thu Dec 5 12:10:52 CET 2013


Hi all,

I am writing to you because I need help. I would like to change behavior of strongswan in case of fetching crls for certificates. As far as I know currently crls are fetch and stored on demand when IPsec tunnel is setting up. I would like to change this behavior to fetch and stored crl for all certificates when they are loaded to strongswan. I am using strongswan in version 5.0.4. I would like to write a patch on my implementation. I tried to investigate my implementation of strongswan but I don't know where to start. I tried to analyze revocation plugin and as far as I know crls are fetched while validating. Could someone can help my change code to do that?

Best regards,
Lukasz Grzelak
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/dev/attachments/20131205/1824d7fc/attachment.html>


More information about the Dev mailing list