[strongSwan-dev] query on peer (remote) certificate validation

SIMON BABY simonkbaby at gmail.com
Fri Dec 4 06:56:56 CET 2020

I am new to the strongswan library and I have a query regarding the
function parse_extensions inside
file libstrongswan/plugins/openssl/openssl_x509.c.
Does this function validate the peer (remote) certificate extensions or
validate only local certificate extensions?
For validating the peer certificate extensions,  do we have any specific
configuration parameter to enable or it will do by default?

