aboutsummaryrefslogtreecommitdiffstats
path: root/src/pki/commands/signcrl.c
diff options
context:
space:
mode:
authorAndreas Steffen <andreas.steffen@strongswan.org>2014-11-28 13:13:47 +0100
committerAndreas Steffen <andreas.steffen@strongswan.org>2014-11-29 14:51:18 +0100
commitb6bb32e658347ac150478959c0f15caab0fdea88 (patch)
treed1481682d60927c96d23bd0d11faac8e9b0f2a0f /src/pki/commands/signcrl.c
parent43d92475998f85b977ca98dd8ac81fc630a19000 (diff)
downloadstrongswan-b6bb32e658347ac150478959c0f15caab0fdea88.tar.bz2
strongswan-b6bb32e658347ac150478959c0f15caab0fdea88.tar.xz
Implemented full BLISS support for IKEv2 public key authentication and the pki tool
Diffstat (limited to 'src/pki/commands/signcrl.c')
-rw-r--r--src/pki/commands/signcrl.c5
1 files changed, 5 insertions, 0 deletions
diff --git a/src/pki/commands/signcrl.c b/src/pki/commands/signcrl.c
index e5f49efe2..212e1a820 100644
--- a/src/pki/commands/signcrl.c
+++ b/src/pki/commands/signcrl.c
@@ -335,6 +335,11 @@ static int sign_crl()
error = "CA private key does not match CA certificate";
goto error;
}
+ if (private->get_type(private) == KEY_BLISS)
+ {
+ /* currently only SHA-512 is supported */
+ digest = HASH_SHA512;
+ }
if (basecrl)
{