testing: Converted tnc scenarios to swanctl
This commit is contained in:
@@ -1,3 +0,0 @@
|
||||
# /etc/ipsec.conf - strongSwan IPsec configuration file
|
||||
|
||||
/* configuration is read from /etc/pts/options */
|
||||
@@ -1,8 +1,8 @@
|
||||
--connect sun.strongswan.org
|
||||
--client moon.strongswan.org
|
||||
--key /etc/ipsec.d/private/moonKey.pem
|
||||
--cert /etc/ipsec.d/certs/moonCert.pem
|
||||
--cert /etc/ipsec.d/cacerts/strongswanCert.pem
|
||||
--key /etc/swanctl/rsa/moonKey.pem
|
||||
--cert /etc/swanctl/x509/moonCert.pem
|
||||
--cert /etc/swanctl/x509ca/strongswanCert.pem
|
||||
--mutual
|
||||
--quiet
|
||||
--debug 2
|
||||
|
||||
@@ -1,7 +1,11 @@
|
||||
# /etc/strongswan.conf - strongSwan configuration file
|
||||
|
||||
pt-tls-client {
|
||||
load = x509 openssl pem pkcs1 random nonce revocation curl tnc-tnccs tnc-imc tnc-imv tnccs-20
|
||||
load = random nonce x509 openssl pem pkcs1 revocation curl tnc-tnccs tnc-imc tnc-imv tnccs-20
|
||||
}
|
||||
|
||||
libtls {
|
||||
suites = TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256
|
||||
}
|
||||
|
||||
libimcv {
|
||||
|
||||
@@ -0,0 +1 @@
|
||||
# the PT-TLS client reads its configuration and secrets via the command line
|
||||
Reference in New Issue
Block a user