From: Martin Willi Date: Fri, 21 May 2010 14:38:19 +0000 (+0200) Subject: Use CAs subjectKeyIdentifier as CRLs authorityKeyIdentifier X-Git-Tag: 4.4.1~222 X-Git-Url: http://git.ipfire.org/gitweb.cgi?a=commitdiff_plain;h=09f38ebe54be61236f73085eabfdd5da6951c619;p=thirdparty%2Fstrongswan.git Use CAs subjectKeyIdentifier as CRLs authorityKeyIdentifier --- diff --git a/src/libstrongswan/plugins/x509/x509_crl.c b/src/libstrongswan/plugins/x509/x509_crl.c index f3d5c6d73a..1b0e1af8a5 100644 --- a/src/libstrongswan/plugins/x509/x509_crl.c +++ b/src/libstrongswan/plugins/x509/x509_crl.c @@ -619,7 +619,7 @@ static bool generate(private_x509_crl_t *this, certificate_t *cert, this->issuer = cert->get_issuer(cert); this->issuer = this->issuer->clone(this->issuer); - this->authKeyIdentifier = chunk_clone(x509->get_authKeyIdentifier(x509)); + this->authKeyIdentifier = chunk_clone(x509->get_subjectKeyIdentifier(x509)); /* select signature scheme */ this->algorithm = hasher_signature_algorithm_to_oid(digest_alg,