Note about certificates added to CA section in ipsec.conf man page.

This commit is contained in:
Tobias Brunner
2011-05-05 10:30:51 +02:00
parent a855af9544
commit bf3c371531
+5 -2
View File
@@ -1043,8 +1043,11 @@ is not given, the
of this connection will be used as peer ID. of this connection will be used as peer ID.
.SH "CA SECTIONS" .SH "CA SECTIONS"
This are optional sections that can be used to assign special These are optional sections that can be used to assign special
parameters to a Certification Authority (CA). parameters to a Certification Authority (CA). Because the daemons
automatically import CA certificates from \fI/etc/ipsec.d/cacerts\fP,
there is no need to explicitly add them with a CA section, unless you
want to assign special parameters (like a CRL) to a CA.
.TP .TP
.BR also " = <name>" .BR also " = <name>"
includes ca section includes ca section