[strongSwan] CRL issues

Claude Tompers claude.tompers at restena.lu
Wed Sep 5 15:41:42 CEST 2012


> Hi Martin,
>
> Thanks for the explanations.
>
> I don't see an authorityKeyIdentifier in my CRL, but my openssl.cnf
> contains :
>
> [ crl_ext ]
> authorityKeyIdentifier = keyid:always,issuer:always
I found the problem. I was missing the 'crl_extensions = crl_ext' line
in my openssl.cnf.
It works now.

thanks a lot for your help.

kind regards,
Claude
>
> Isn't this correct ?
>
> kind regards,
> Claude
>
>
>
> _______________________________________________
> Users mailing list
> Users at lists.strongswan.org
> https://lists.strongswan.org/mailman/listinfo/users


-- 
Claude Tompers
Ingénieur réseau et système
Fondation RESTENA - Réseau Téléinformatique de l'Education Nationale et de la Recherche
6, rue Richard Coudenhove-Kalergi
L-1359 Luxembourg

Tel: +352 424409 1
Fax: +352 422473


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 259 bytes
Desc: OpenPGP digital signature
URL: <http://lists.strongswan.org/pipermail/users/attachments/20120905/f7093786/attachment.pgp>


More information about the Users mailing list