FireBrick Road Warrior strongSwan: Difference between revisions

(→‎strongSwan Config: more syntaxhighlight)
(→‎CA Certificate: ISRGRootX1 seems to be the current cert...)
 
If you're using a Let's Encrypt cert on the FireBrick (which is easy) - you'll need to symlink the system CA:
ln -s /etc/ssl/certs/DST_Root_CA_X3ISRGRootX1.pem /etc/ipsec.d/cacerts/DST_Root_CA_X3ISRGRootX1.pem
 
==strongSwan Config==