[strongSwan] NetworkManager-strongswan-gnome IKEv2 configuration question.

Josh jvpn at use.startmail.com
Tue Dec 25 04:03:01 CET 2018


While trying to connect to a someone's IKEv2 VPN server which uses 
letsencrypt certificates I found detailed NetworkManager instructions in 
https://www.personalvpn.com/support/linux/ikev2

Question: why do I need do explicitly extract letsencrypt parent

Issuer: O=Digital Signature Trust Co., CN=DST Root CA X3

certificate from /etc/pki/ca-trust/extracted/pem/tls-ca-bundle.pem 
(found after # DST Root CA X3) and load into configuration dialog?

Should charon-nm automatically search for root certificates in above 
file if none specified?
OS X and MS Windows don't require providing any certificates for 
connecting to the same server.

Regards,
Josh.


More information about the Users mailing list