[Pkg-swan-devel] Bug#835095: strongswan-nm: doesn't use the system CA store

Raphael Geissert geissert at debian.org
Mon Aug 22 12:23:20 UTC 2016


Package: strongswan-nm
Version: 5.4.0-3
Severity: minor
Tags: patch

Hi,

When no certificate is specified in a network-manager's strongswan vpn
connection, charon-nm looks for CAs in a directory set at
compile-time, nm-ca-dir. This, however, by default makes it look for
certificates in /usr/share/ca-certificates instead of the expected
dir,  /etc/ssl/certs.

Attached patch makes charon-nm default to using /etc/ssl/certs.

Cheers,
-- 
Raphael Geissert - Debian Developer
www.debian.org - get.debian.net
-------------- next part --------------
A non-text attachment was scrubbed...
Name: 0001-make-charon-nm-use-etc-ssl-certs-when-no-endpoint-ce.patch
Type: text/x-patch
Size: 732 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-swan-devel/attachments/20160822/758e8d4f/attachment.bin>


More information about the Pkg-swan-devel mailing list