Hi, On Tue, Oct 31, 2006 at 07:11:19PM +0100, Andreas Steffen wrote: > Try strongSwan from http://www.strongswan.org which has a regular > PKCS#11 smartcard interface and allows to select certificates > according to position e.g. > > leftcert=%smartcard#4 > > which is the fourth certificate in the enumeration shown by > > ipsec listcards
Finally came to try it out, - strongswan 2.8.0 doesnt build on fc6 at the moment, 2.5.7 is the last one compiling without problems there - 2.8.0 compiles on debian/unstable However ineed the klips-usage that OpenSwan offers with 2.6 kernel, until klips/netkey are merged i need OpenSwan. Also i had to patch out some checks if the ID of the tunnelendpoint matches the subject of the cert its sending. Thanks for noting, ill have a look at strongswan again after the merge of netkey/klips. Christian _______________________________________________ opensc-devel mailing list opensc-devel@lists.opensc-project.org http://www.opensc-project.org/mailman/listinfo/opensc-devel