On Wed, Aug 13, 2014 at 03:36:01PM -0700, Cobin Bluth wrote:

> I absolutely love tinc and the features it brings to the table, and also
> the stability it provides.
> 
> My one issue with tinc is that managing certs between different nodes seems
> rather inconvenient. By using "tincd -n vpn -D -d5" I can see when a cert
> fingerprint is denied.
> 
> Does tinc have features like that of puppet where you can list the pending
> certs and accept or deny them?
> 
> see https://docs.puppetlabs.com/references/3.5.1/man/cert.html

No. Actually, when making a connection, no cert or cert fingerprint is
ever exchanged. Nodes need to know each other's public key beforehand.

With tinc 1.1preX, there is the invitation protocol, and there it might
make sense to have a way to list pending invitations, so I just added
that feature to my TODO list.

Very terse documentation is here:

http://tinc-vpn.org/documentation-1.1/tinc-commands.html#index-invite

-- 
Met vriendelijke groet / with kind regards,
     Guus Sliepen <[email protected]>

Attachment: signature.asc
Description: Digital signature

_______________________________________________
tinc mailing list
[email protected]
http://www.tinc-vpn.org/cgi-bin/mailman/listinfo/tinc

Reply via email to