Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-114701

[RFE] [NM-libreswan] Support rightca in ipsec section

Linking RHIVOS CVEs to...Migration: Automation ...SWIFT: POC ConversionSync from "Extern...XMLWordPrintable

    • NetworkManager-libreswan-1.2.27-1.el10
    • None
    • rhel-net-mgmt
    • 2
    • False
    • False
    • Hide

      None

      Show
      None
    • No
    • None
    • Hide

      Definition of Done:

      Please mark each item below with ( / ) if completed or ( x ) if incomplete:

      The acceptance criteria defined below are met.

      Given a NetworkManager connection profile of type "ipsec",

      When the sysadmin sets the `rightca` property to "C=US, O=ExampleCA" for example,

      Then the property is accepted and stored in the connection, and it is correctly passed to the underlying Libreswan configuration.


      Integration test case is available upstream.


      Code is reviewed and merged upstream.


      Preliminary testing is done.


      Upstream documentation is written in the upstream MR.

      Show
      Definition of Done: Please mark each item below with ( / ) if completed or ( x ) if incomplete: The acceptance criteria defined below are met. Given a NetworkManager connection profile of type "ipsec", When the sysadmin sets the `rightca` property to "C=US, O=ExampleCA" for example, Then the property is accepted and stored in the connection, and it is correctly passed to the underlying Libreswan configuration. Integration test case is available upstream. Code is reviewed and merged upstream. Preliminary testing is done. Upstream documentation is written in the upstream MR.
    • Pass
    • Automated
    • Unspecified Release Note Type - Unknown
    • Unspecified
    • Unspecified
    • Unspecified
    • None

      Goal

      For an IPSEC configuration from Openshift (libreswan) to strongswan we found that rightca parameter could be needed to establish the connection.

      Currently, this cannot be configured with nmstate.

       

       

              nm-team Network Management Team
              rh-ee-mmayeras Mickael Mayeras
              Network Management Team Network Management Team
              Vladimir Benes Vladimir Benes
              Votes:
              0 Vote for this issue
              Watchers:
              13 Start watching this issue

                Created:
                Updated: