[Swan] how/where to configure list of 'valid' certs

Marc Marc at f1-outsourcing.eu
Mon Jan 15 12:40:17 EET 2024


Hmmm, I don't really get any results on how to revoke a cert. I am constantly getting this microsoft shit where there is an certutil -revoke argument.

I created a crl list with this:

crlutil -G -n "Example CA" -d sql:clientcertdb/ <<EOF
update=20050204153000Z
addcert 34-40 20050104153000Z
EOF

How do I add a cert to this?



> 
> >Or is there some sort of certificate revoke file I can configure somewhere?
> 
> Check Certificate Revocation Lists in the documentation.
> 
> https://www.openssl.org/docs/man3.0/man1/openssl-crl.html
> 
> https://libreswan.org/man/ipsec.conf.5.html
> 
> --
> Sent from my Android device with K-9 Mail. Please excuse my brevity.
> _______________________________________________
> Swan mailing list
> Swan at lists.libreswan.org
> https://lists.libreswan.org/mailman/listinfo/swan


More information about the Swan mailing list