/[smecontribs]/rpms/smeserver-openvpn-s2s/contribs8/smeserver-openvpn-s2s-0.1-use_verify_x509_name.patch
ViewVC logotype

Contents of /rpms/smeserver-openvpn-s2s/contribs8/smeserver-openvpn-s2s-0.1-use_verify_x509_name.patch

Parent Directory Parent Directory | Revision Log Revision Log | View Revision Graph Revision Graph


Revision 1.1 - (show annotations) (download)
Thu Nov 14 17:47:20 2013 UTC (11 years ago) by vip-ire
Branch: MAIN
CVS Tags: smeserver-openvpn-s2s-0_1-25_el5_sme, smeserver-openvpn-s2s-0_1-26_el5_sme, smeserver-openvpn-s2s-0_1-24_el5_sme, smeserver-openvpn-s2s-0_1-23_el5_sme, smeserver-openvpn-s2s-0_1-27_el5_sme, HEAD
* Thu Nov 14 2013 Daniel Berteaud <daniel@firewall-services.com> 0.1-23.sme
- Use verify-x509-name instead of tls-remote

1 diff -Nur smeserver-openvpn-s2s-0.1/root/etc/e-smith/templates/etc/openvpn/s2s/openvpn-s2s.conf/30key smeserver-openvpn-s2s-0.1_tls_remote/root/etc/e-smith/templates/etc/openvpn/s2s/openvpn-s2s.conf/30key
2 --- smeserver-openvpn-s2s-0.1/root/etc/e-smith/templates/etc/openvpn/s2s/openvpn-s2s.conf/30key 2013-11-14 18:39:44.936820765 +0100
3 +++ smeserver-openvpn-s2s-0.1_tls_remote/root/etc/e-smith/templates/etc/openvpn/s2s/openvpn-s2s.conf/30key 2013-11-14 18:41:27.022748017 +0100
4 @@ -22,7 +22,7 @@
5 if ( -e "/etc/openvpn/s2s/pub/$key".'_cacrl.pem' ) &&
6 ( ! -z "/etc/openvpn/s2s/pub/$key".'_cacrl.pem' );
7 $OUT .= "ns-cert-type client\n" if ($checkcrt eq 'enabled');
8 - $OUT .= "tls-remote $tlsremote\n" if ($tlsremote ne '');
9 + $OUT .= "verify-x509-name $tlsremote name\n" if ($tlsremote ne '');
10 }
11 else{
12 $OUT .= "tls-client\n";
13 @@ -36,7 +36,7 @@
14 if ( -e "/etc/openvpn/s2s/pub/$key".'_cacrl.pem' ) &&
15 ( ! -z "/etc/openvpn/s2s/pub/$key".'_cacrl.pem' );
16 $OUT .= "ns-cert-type server\n" if ($checkcrt eq 'enabled');
17 - $OUT .= "tls-remote $tlsremote\n" if ($tlsremote ne '');
18 + $OUT .= "verify-x509-name $tlsremote name\n" if ($tlsremote ne '');
19 }
20 }
21

admin@koozali.org
ViewVC Help
Powered by ViewVC 1.2.1 RSS 2.0 feed