Project

General

Profile

ipsec.d » History » Version 4

Tobias Brunner, 11.05.2011 13:51

1 3 Martin Willi
h1. ipsec.d
2 3 Martin Willi
3 3 Martin Willi
strongSwan's _/etc/ipsec.d/_ directory contains various certificate and CRL files that are loaded by
4 4 Tobias Brunner
the keying daemons pluto and charon. The following subdirectories are currently defined:
5 1 Martin Willi
6 4 Tobias Brunner
* [[IpsecDirectoryPrivate|private]] contains RSA and ECDSA private key files
7 3 Martin Willi
* [[IpsecDirectoryCerts|certs]] contains X.509 or PGP end entity certificates
8 3 Martin Willi
* [[IpsecDirectoryCrls|crls]] contains certificate revocation lists
9 1 Martin Willi
* [[IpsecDirectoryCacerts|cacerts]] contains trustworthy CA certificates
10 3 Martin Willi
* [[IpsecDirectoryOcspcerts|ocspcerts]] contains trustworthy OCSP signer certificates
11 3 Martin Willi
* [[IpsecDirectoryAacerts|aacerts]] contains trustworthy authorization authority certificates
12 3 Martin Willi
* [[IpsecDirectoryAcerts|acerts]] contains attribute certificates
13 4 Tobias Brunner
* [[IpsecDirectoryReqs|reqs]] contains PKCS#10 certificate requests