[strongSwan] Can't load certificates and keys via symlink

Noel Kuntze noel at familie-kuntze.de
Fri Feb 10 14:59:01 CET 2017


On 10.02.2017 12:17, Jose Novacho wrote:
> It seems we are talking about two different things.

I know that and it is deliberate. The things I describe are issues that will, albeit at some arbitrary point in the future,
be encountered by you, if you do not fix them now.

> I have used the LetsEncrypt certificate to authenticate the server itself. Peers are using username and password using EAP, that's not an issue. 

You are still trusting a public CA to not issue another certificate for that server to a malicious third party. 


-- 

Mit freundlichen Grüßen/Kind Regards,
Noel Kuntze

GPG Key ID: 0x63EC6658
Fingerprint: 23CA BB60 2146 05E7 7278 6592 3839 298F 63EC 6658


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 866 bytes
Desc: OpenPGP digital signature
URL: <http://lists.strongswan.org/pipermail/users/attachments/20170210/8832071a/attachment.sig>


More information about the Users mailing list