Hi,

On Tue, Oct 31, 2006 at 07:11:19PM +0100, Andreas Steffen wrote:
> Try strongSwan from http://www.strongswan.org which has a regular
> PKCS#11 smartcard interface and allows to select certificates
> according to position e.g.
> 
>   leftcert=%smartcard#4
> 
> which is the fourth certificate in the enumeration shown by
> 
>   ipsec listcards

Finally came to try it out,
- strongswan 2.8.0 doesnt build on fc6 at the moment, 2.5.7 is the
last one compiling without problems there
- 2.8.0 compiles on debian/unstable

However ineed the klips-usage that OpenSwan offers with 2.6 kernel,
until klips/netkey are merged i need OpenSwan. Also i had to patch
out some checks if the ID of the tunnelendpoint matches the subject
of the cert its sending.

Thanks for noting, ill have a look at strongswan again after the
merge of netkey/klips.


Christian
_______________________________________________
opensc-devel mailing list
opensc-devel@lists.opensc-project.org
http://www.opensc-project.org/mailman/listinfo/opensc-devel

Reply via email to