Home Recent Changes WikiHelp
Openswan /
Leftrsasigkey
Login
Last modified: November 22, 2006, at 04:50 AM

The left participant's public key for RSA signature authentication, in RFC 2537 format using ipsec_ttodata(3) encoding. The magic value dnsondemand (the default) means the key is to be fetched from DNS at the time it is needed. The value %dnsonload means the key is to be fetched from DNS at the time the connection description is read from ipsec.conf; currently this will be treated as any or right=dns is currently treated as dnsondemand in the future. The identity used for the left participant must be a specific host, not cert will load the information required from a certificate defined in %leftcert and automatically define leftid for you. Caution: if two connection descriptions specify different public keys for the same leftid, confusion and madness will ensue.

Powered by PmWiki
view edit upload print history