[prev in list] [next in list] [prev in thread] [next in thread]
List: strongswan-users
Subject: Re: [strongSwan] Help,
From: "Jacky.He" <jacky.he () gmail ! com>
Date: 2011-07-28 11:49:20
Message-ID: 4e314cc5.862c440a.2f3b.4eab () mx ! google ! com
[Download RAW message or body]
Thank you, Tobias.
That is some part of my openssl.cnf, but I use your suggestion to uncomment this line \
in my openssl.cnf, everything is ok now. # crl_extensions = crl_ext
Thank you again.
--
Best Regards
Jacky
-----Original Message-----
From: Tobias Brunner [mailto:tobias@strongswan.org]
Sent: Thursday, July 28, 2011 6:53 PM
To: Jacky.He
Cc: Users@lists.strongswan.org
Subject: Re: [strongSwan] Help, charon: 03[CFG] issuer of fetched CRL does not match \
CRL issuer
Hi Jacky,
Is that your complete openssl.cnf? Because the crl_ext section has to
actually be referenced in your CA section.
Something like:
[ ca ]
default_ca = my_ca
[ my_ca ]
dir = /dir/to/ca
# ... other options (see 'man ca')
crl_extensions = crl_ext
Regards,
Tobias
__________ Information from ESET NOD32 Antivirus, version of virus signature database \
6330 (20110727) __________
The message was checked by ESET NOD32 Antivirus.
http://www.eset.com
_______________________________________________
Users mailing list
Users@lists.strongswan.org
https://lists.strongswan.org/mailman/listinfo/users
[prev in list] [next in list] [prev in thread] [next in thread]
Configure |
About |
News |
Add a list |
Sponsored by KoreLogic