Hi All:
I have configured pre-shared as authentication on HA machines. I also have 
known how to configure rsasig on standalone machine.
Now customer want to support rsasig on HA machine.  Can I just copy public key 
(/etc/ipsec.secrets) and private key (/etc/ipsec.d/*.db) from ACTIVE to 
overwrite corresponding configuration on STANDBY ? Then after HA switch over, 
peer can still connect to our HA?

Thanks and regards
Hao Chen                                          
_______________________________________________
Swan mailing list
[email protected]
https://lists.libreswan.org/mailman/listinfo/swan

Reply via email to