Source: strongswan Version: 5.0.4-3 Severity: wishlist Hello Yves-Alexis and Rene, per private email discussion you asked that I submit feature requests through the BTS.
Please enable the ‘ipseckey’ and dependent ‘unbound’ plugins. These plugins enable lookup of public certificates in IPSECKEY DNS records, secured by DNSSEC, much like how openssh looks up SSHFP records. This plugin is marked as stable according to the PluginList¹ wiki. It does require additional dependency on libldns and libunbound. ¹ https://wiki.strongswan.org/projects/strongswan/wiki/PluginList -- System Information: Debian Release: 7.1 APT prefers stable APT policy: (500, 'stable') Architecture: amd64 (x86_64) Kernel: Linux 3.9-0.bpo.1-amd64 (SMP w/4 CPU cores) Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) (ignored: LC_ALL set to en_US.UTF-8) Shell: /bin/sh linked to /bin/dash -- Gerald Turner Email: gtur...@unzane.com JID: gtur...@unzane.com GPG: 0xFA8CD6D5 21D9 B2E8 7FE7 F19E 5F7D 4D0C 3FA0 810F FA8C D6D5
pgpSPx1u3t7JU.pgp
Description: PGP signature