Does anyone know if it is possible to add or run some patch for ASL that make it support PKI authentication like it is made with FreeS/WAN?
Here is the example:
FYI
Linux FreeS/WAN
X.509 Certificate Support for the Linux FreeS/WAN IPsec Stack
The X.509 patch supports RSA-based authentication using X.509 certificates between a Linux FreeS/WAN security gateway and an unlimited number of IPSec peers. With version 0.9 of the patch, certificate authority (CA) trust chains and certificate revocation lists (CRLs) are introduced, thereby eliminating the need to store peer certificates locally on the Linux host.
This thread was automatically locked due to age.