From: Andreas Steffen Date: Tue, 7 Feb 2012 21:11:51 +0000 (+0100) Subject: completed imc/imv-attestation settings X-Git-Tag: 4.6.2~9 X-Git-Url: http://git.ipfire.org/gitweb.cgi?a=commitdiff_plain;h=e01751035eddace1f165868eb13680de5df5ffe2;p=thirdparty%2Fstrongswan.git completed imc/imv-attestation settings --- diff --git a/man/strongswan.conf.5.in b/man/strongswan.conf.5.in index 3588517c7d..8acf1e00ac 100644 --- a/man/strongswan.conf.5.in +++ b/man/strongswan.conf.5.in @@ -126,6 +126,13 @@ will return The following keys are currently defined (using dot notation). The default value (if any) is listed in brackets after the key. +.SS attest section +.TP +.BR attest.database +Path to database with file measurement information +.TP +.BR attest.load +Plugins to load in ipsec attest tool .SS charon section .TP .BR charon.block_threshold " [5]" @@ -599,15 +606,27 @@ AIK certificate file .BR libimcv.plugins.imc-attestation.aik_key AIK public key file .TP +.BR libimcv.plugins.imv-attestation.nonce_len " [20]" +DH nonce length +.TP +.BR libimcv.plugins.imv-attestation.use_quote2 " [yes]" +Use Quote2 AIK signature instead of Quote signature +.TP .BR libimcv.plugins.imv-attestation.cadir Path to directory with AIK cacerts .TP .BR libimcv.plugins.imv-attestation.database Path to database with file measurement information .TP -.BR libimcv.plugins.imv-attestation.hash_algorithm " [sha1]" +.BR libimcv.plugins.imv-attestation.dh_group " [ecp256]" +Preferred Diffie-Hellman group +.TP +.BR libimcv.plugins.imv-attestation.hash_algorithm " [sha256]" Preferred measurement hash algorithm .TP +.BR libimcv.plugins.imv-attestation.min_nonce_len " [0]" +DH minimum nonce length +.TP .BR libimcv.plugins.imv-attestation.platform_info Information on operating system and hardware platform .TP