diff options
Diffstat (limited to 'src')
| -rwxr-xr-x | src/conf_mode/vpn_ipsec.py | 3 | 
1 files changed, 3 insertions, 0 deletions
diff --git a/src/conf_mode/vpn_ipsec.py b/src/conf_mode/vpn_ipsec.py index ff6090e22..99b82ca2d 100755 --- a/src/conf_mode/vpn_ipsec.py +++ b/src/conf_mode/vpn_ipsec.py @@ -362,6 +362,9 @@ def verify(ipsec):              if 'authentication' not in peer_conf or 'mode' not in peer_conf['authentication']:                  raise ConfigError(f"Missing authentication on site-to-site peer {peer}") +            if {'id', 'use_x509_id'} <= set(peer_conf['authentication']): +                raise ConfigError(f"Manually set peer id and use-x509-id are mutually exclusive!") +              if peer_conf['authentication']['mode'] == 'x509':                  if 'x509' not in peer_conf['authentication']:                      raise ConfigError(f"Missing x509 settings on site-to-site peer {peer}")  | 
