diff options
author | 2020-09-16 21:21:23 +0000 | |
---|---|---|
committer | 2020-09-16 21:21:23 +0000 | |
commit | 5d0e41c134ff7ea148218fab7bf66d99207018dd (patch) | |
tree | 036aac7628c39a0c8910b4bf998925d8808e9d8d /lib/libssl | |
parent | Stop removing the control socket on exit and tighten the unveil even (diff) | |
download | wireguard-openbsd-5d0e41c134ff7ea148218fab7bf66d99207018dd.tar.xz wireguard-openbsd-5d0e41c134ff7ea148218fab7bf66d99207018dd.zip |
Fix EAP authentication if the initiator sends no certificate
request. The locally configured request is used as fallback to find a
certificate or key to send. The local auth method for MSCHAP-V2 should
be IKEV2_AUTH_SIG_ANY, which defaults to X509 certificates, instead of
raw rsa keys.
Tested with Strongswan, iPhone and Windows
Found by and ok sthen@
ok patrick@
Diffstat (limited to 'lib/libssl')
0 files changed, 0 insertions, 0 deletions