Project

General

Profile

ipsec.d » History » Version 2

« Previous - Version 2/5 (diff) - Next » - Current version
Martin Willi, 01.04.2008 11:03


= ipsec.d =

strongSwan's ''/etc/ipsec.d/'' directory contains various certificate and CRL files that are loaded by
the keying daemons Pluto and Charon. The following subdirectories are currently defined:

  • [wiki:IpsecDirectoryPrivate private] contains RSA private key files
  • [wiki:IpsecDirectoryCerts certs] contains X.509 or PGP end entity certificates
  • [wiki:IpsecDirectoryCrls crls] contains certificate revocation lists
  • [wiki:IpsecDirectoryCacerts cacerts] contains trustworthy CA certificates
  • [wiki:IpsecDirectoryOcspcerts ocspcerts] contains trustworthy OCSP signer certificates
  • [wiki:IpsecDirectoryAacerts aacerts] contains trustworthy authorization authority certificates
  • [wiki:IpsecDirectoryAcerts acerts] contains attribute certificates
  • [wiki:IpsecDirectoryReqs reqs] contains PKCS!#10 certificate requests