[Swan-dev] ipsec showhostkey --pem --ckaid .... (RSA)

Andrew Cagney andrew.cagney at gmail.com
Sun Jul 3 22:37:18 EEST 2022


This should print the raw public RSA key in PEM format suitable for
consumption by OpenSSL; so I'm looking for testers.

Tests were updated, see ipsec-hostkey*/:
- one test is feeding the output into openssl pkey to see if it barfs
- another test generates hostkeys on east/west and then uses them to
do IKEv[12] exchanges
(if we've any tests playing with pre-wired host keys, they can probably go)
- a WIP ECDSA test  was added (fails)


More information about the Swan-dev mailing list