strongSwan KVM Tests / ikev2-multi-ca / loop

Test ikev2-multi-ca/loop

Description

The roadwarrior carol, possessing a certificate issued by the Research CA, tries to set up a tunnel to gateway moon. The Research CA's certificate is signed by the Sales CA and the Sales CA's certificate in turn is signed by the Research CA. This leads to an endless trust path loop but which is aborted by moon when the path level reaches a depth of 7 iterations. alice moon carol winnetou dave

moon

 

carol

 

tcpdump