Re: [strongSwan] OCSP and CDP

2019-12-19 Thread Modster, Anthony
Thanks I will take a look, I may write a custom plugin or try python w/openssl -Original Message- From: Tobias Brunner Sent: Thursday, December 19, 2019 9:25 AM To: Modster, Anthony ; users@lists.strongswan.org Subject: Re: [strongSwan] OCSP and CDP ---External Email--- Hi Anthony

Re: [strongSwan] OCSP and CDP

2019-12-19 Thread Tobias Brunner
Hi Anthony, > ? is there a developers guide for writing plugins [1] has some general information and there are a lot of plugins you could have a look at. > ? what would the plugin do Process OCSP requests and return responses (probably via HTTP) and/or do the same for CRLs. > ? does (RFC 6960)

Re: [strongSwan] OCSP and CDP

2019-12-19 Thread Modster, Anthony
: [strongSwan] OCSP and CDP ---External Email--- Hi Anthony, > ? can strongswan be a OCSP or CDP server Theoretically yes, but you'd have to program a plugin that does that yourself. It would theoretically also be possible to transmit CRLs (RFC 7296) and OCSP (RFC 4806) via IKEv2 certificate

Re: [strongSwan] OCSP and CDP

2019-12-19 Thread Tobias Brunner
Hi Anthony, > ? can strongswan be a OCSP or CDP server Theoretically yes, but you'd have to program a plugin that does that yourself. It would theoretically also be possible to transmit CRLs (RFC 7296) and OCSP (RFC 4806) via IKEv2 certificate payloads, but strongSwan currently doesn't support t

[strongSwan] OCSP and CDP

2019-12-18 Thread Modster, Anthony
Hello ? can strongswan be a OCSP or CDP server We are using strongswan version:5.5.1