Project

General

Profile

ipsec.d » History » Version 1

Version 1/5 - Next » - Current version
Martin Willi, 02.09.2007 08:25
added description of ipsec.d subdirectories


= ipsec.d =

strongSwan's ''/etc/ipsec.d/'' directory contains various certificate and CRL files that are loaded by
the keying daemons Pluto and Charon. The following subdirectories are currently defined:

  • [wiki:IpsecDirectoryPrivate private] contains RSA private key files
  • [wiki:IpsecDirectoryCerts certs] contains X.509 or PGP end entity certificates
  • [wiki:IpsecDirectoryCrls crls] contains certificate revocation lists
  • [wiki:IpsecDirectoryCacerts cacerts] contains trustworthy CA certificates
  • [wiki:IpsecDirectoryOcspcerts ocspcerts] contains trustworthy OCSP signer certificates
  • [wiki:IpsecDirectoryAacerts aacerts] contains trustworthy authorization authority certificates
  • [wiki:IpsecDirectoryAcerts acerts] contains attribute certificates
  • [wiki:IpsecDirectoryReqs reqs] contains PKCS#10 certificate requests