multi-level-ca-strict scenario added

This commit is contained in:
Andreas Steffen
2007-05-25 09:23:24 +00:00
parent 238b92d632
commit 0bc543f1dc
15 changed files with 287 additions and 0 deletions
@@ -0,0 +1,7 @@
By setting <b>strictcrlpolicy=yes</b>, a <b>strict CRL policy</b> is enforced
on all peers.
The VPN gateway <b>moon</b> grants access to the hosts <b>alice</b> and
<b>venus</b> to anyone presenting a certificate belonging to a trust
chain anchored in strongSwan Root CA. Therefore both road warriors
<b>carol</b> and <b>dave</b>, holding certificates from the Research CA
and Sales CA, respectively, can reach both <b>alice</b> and <b>venus</b>.