Helsinki 2013 meetup: Difference between revisions
No edit summary |
No edit summary |
||
Line 53: | Line 53: | ||
Makefile.depend.linux : do we really need it in git? when i locally re-generate it is different. | Makefile.depend.linux : do we really need it in git? when i locally re-generate it is different. | ||
Connection validations: check invalid combinations when loading connections. eg Con without matching CERT in NSS db. subnet(s) & addresspool. Where is the appropriate place to do it? addcon or starterwhack.c - set_whack_end . If it is whack we already parsed the "also" conn lines we may be able to generate warnings/errors |
Revision as of 23:27, 5 June 2013
Agenda items
Testing Harness do we want to integrate with CISCO?
crypto boundary and certification
/etc/ipsec.d ASN.1/PEM and and NSS / openssl
Linux Secure Tunnel interface support
interface listening, binding, updating
ipsec eroute and ipsec auto --status replacement
remove DEBUG switch for userland, possibly also klips. always set
Website user and dev documentation
webca management with addresspool
git branch/tree policies review
Feature matrix: strongswan vs libreswan
Makefile.depend.linux : do we really need it in git? when i locally re-generate it is different.
Connection validations: check invalid combinations when loading connections. eg Con without matching CERT in NSS db. subnet(s) & addresspool. Where is the appropriate place to do it? addcon or starterwhack.c - set_whack_end . If it is whack we already parsed the "also" conn lines we may be able to generate warnings/errors