Actions
Feature #4234
openallow for strict user <> cn validation of mobile ipsec users when using rsa+xauth
Start date:
01/18/2015
Due date:
% Done:
0%
Estimated time:
Plus Target Version:
Release Notes:
Description
Allow for strict user <> cn validation of mobile ipsec users when using rsa+xauth
It seems the gui setting is missing, but the background code is already in place to allow this.
Updated by Renato Botelho over 11 years ago
- Target version changed from 2.2 to 2.2.1
Push it to 2.2.1
Updated by Chris Buechler over 11 years ago
- Target version changed from 2.2.1 to 2.2.2
Updated by Chris Buechler over 11 years ago
- Target version changed from 2.2.2 to 2.2.3
Updated by Chris Buechler about 11 years ago
- Target version changed from 2.2.3 to 2.3
Updated by Jim Thompson over 10 years ago
- Assignee changed from Matthew Smith to Marc Dye
Updated by Matthew Smith over 10 years ago
- Target version changed from 2.3 to Future
The backend code that exists in /etc/inc/ipsec.auth-user.php is not actually something that can be used. It looks like that code is very closely modeled after code in the openvpn.auth-user.php script. OpenVPN passes the common name in as an environment variable when it calls an auth script. Strongswan doesn't do this so the code won't work.
Actions
Also available in: Atom