strongSwan KVM Tests / ikev2 / rw-ed25519-certpol

Test ikev2/rw-ed25519-certpol

Description

The roadwarriors carol and dave set up a connection each to gateway moon. The authentication is based on X.509 certificates containing Ed25519 keys. The CA defines two certificate policies 1.3.6.1.4.1.36906.1.1.1 and 1.3.6.1.4.1.36906.1.1.2, the former one contained in carol's certificate. Since gateway moon enforces this certificate policy, carol is accepted whereas dave is rejected. alice moon carol winnetou dave

moon

 

carol

 

dave

 

tcpdump