From f5a8a9cdfe52c331177c8bc7b8fb84fc08d4f60a Mon Sep 17 00:00:00 2001 From: sarthurdev <965089+sarthurdev@users.noreply.github.com> Date: Tue, 29 Jun 2021 11:06:44 +0200 Subject: pki: ipsec: T3642: Migrate IPSec to use PKI configuration --- .../include/pki/certificate-key.xml.i | 15 ++------- .../include/pki/dh-parameters.xml.i | 14 -------- .../include/pki/openvpn_tls-auth.xml.i | 14 -------- interface-definitions/pki.xml.in | 8 ++--- interface-definitions/vpn_ipsec.xml.in | 38 ++-------------------- 5 files changed, 8 insertions(+), 81 deletions(-) delete mode 100644 interface-definitions/include/pki/dh-parameters.xml.i delete mode 100644 interface-definitions/include/pki/openvpn_tls-auth.xml.i (limited to 'interface-definitions') diff --git a/interface-definitions/include/pki/certificate-key.xml.i b/interface-definitions/include/pki/certificate-key.xml.i index b68f38442..7f26d25c1 100644 --- a/interface-definitions/include/pki/certificate-key.xml.i +++ b/interface-definitions/include/pki/certificate-key.xml.i @@ -1,17 +1,6 @@ - - - Certificate and private key in PKI configuration - - cert name - Name of certificate in PKI configuration - - - pki certificate - - - - +#include + Private key passphrase diff --git a/interface-definitions/include/pki/dh-parameters.xml.i b/interface-definitions/include/pki/dh-parameters.xml.i deleted file mode 100644 index 6e69528e7..000000000 --- a/interface-definitions/include/pki/dh-parameters.xml.i +++ /dev/null @@ -1,14 +0,0 @@ - - - - Diffie-Hellman parameters in PKI configuration - - DH name - Name of DH params in PKI configuration - - - pki dh - - - - diff --git a/interface-definitions/include/pki/openvpn_tls-auth.xml.i b/interface-definitions/include/pki/openvpn_tls-auth.xml.i deleted file mode 100644 index 2b9a69653..000000000 --- a/interface-definitions/include/pki/openvpn_tls-auth.xml.i +++ /dev/null @@ -1,14 +0,0 @@ - - - - Static key for tls-auth in PKI configuration - - key name - Name of static key in PKI configuration - - - pki openvpn tls-auth - - - - diff --git a/interface-definitions/pki.xml.in b/interface-definitions/pki.xml.in index e818ae438..4b082cbc4 100644 --- a/interface-definitions/pki.xml.in +++ b/interface-definitions/pki.xml.in @@ -141,19 +141,19 @@ OpenVPN keys - + - OpenVPN TLS auth key + OpenVPN shared secret key - OpenVPN TLS auth key data + OpenVPN shared secret key data - OpenVPN TLS auth key version + OpenVPN shared secret key version diff --git a/interface-definitions/vpn_ipsec.xml.in b/interface-definitions/vpn_ipsec.xml.in index 2031217ba..7b1b3a595 100644 --- a/interface-definitions/vpn_ipsec.xml.in +++ b/interface-definitions/vpn_ipsec.xml.in @@ -804,42 +804,8 @@ X.509 certificate - #include - #include - - - File containing the X.509 Certificate Revocation List (CRL) - - txt - File in /config/auth - - - - - - Key file and password to open it - - - - - File containing the private key for the X.509 certificate for this host - - txt - File in /config/auth - - - - - - Password that protects the private key - - txt - Password that protects the private key - - - - - + #include + #include -- cgit v1.2.3