Quantcast
Channel: MikroTik
Viewing all articles
Browse latest Browse all 23620

General • Re: IPsec certification/authentication problem

$
0
0
So how does the certificate the Strongswan presents to the Mikrotik look like now?

openssl x509 -in <certificate-file-name> -noout -text -purpose

The thing is that I do use a Strongswan responder authenticafing itself to Mikrotik initiators using a certificate (plus many Mikrotik peers authenticating themselves to each other using certificates) routinely and it "just works". But the certificate used by Strongswan is not self-signed, it has the domain name it authenticates in SAN, and does have the tls-client and tls-server usages set. And the Mikrotik initiator has the certificate of the signing CA of the Strongswan in its certificate store. Maybe you just have to manually mark the self-signed certificate of the Strongswan responder as trusted in the Mikrotik certifcate store? When you import a CA certificate, this is automatic, but maybe for self-signed certificates it is not?
If a certificate-based VPN connection is specifically specified for operation, I don't understand what kind of identification it expects within it?
First I created the certificates with openssl on Linux, then on Mikrotik, but it doesn't want to work at all, but it worked in both cases under Linux and Windows.

VPN CA cert:
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 3222286872953726184 (0x2cb7dcd6aacfa4e8)
Signature Algorithm: sha256WithRSAEncryption
Issuer: C = HU, ST = Budapest, L = Budapest, O = CyberPointer, OU = CP-P1, CN = CyberPointer Root CA
Validity
Not Before: Apr 18 08:26:19 2025 GMT
Not After : Apr 16 08:26:19 2035 GMT
Subject: C = HU, ST = Budapest, L = Budapest, O = CyberPointer, OU = CP-P1, CN = CyberPointer Root CA
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (4096 bit)
Modulus:
00:b7:dc:eb:b8:6c:58:a9:f8:9c:3c:1d:a1:78:48:
ab:84:5a:6b:8f:61:7b:25:7b:99:b1:d3:7d:cd:c9:
b3:e7:a6:f0:69:9d:d4:ac:9c:34:07:bd:e1:6b:cd:
89:86:fe:3c:b7:07:71:24:23:f1:6c:50:9a:13:f9:
ec:8b:8c:72:af:28:00:4f:42:2f:5a:5e:fb:67:81:
af:a3:a9:4d:d9:7b:4f:28:b6:7a:75:93:53:d3:f8:
c1:31:32:06:d9:ab:8a:e5:37:86:ae:22:46:44:a2:
0b:ea:5d:1d:ea:3e:55:28:d5:fd:b9:fa:d5:94:d6:
ec:34:67:95:6b:7c:84:86:9e:63:56:bb:e8:24:ad:
ac:f8:6d:b2:f6:3a:4e:dd:33:70:9c:3e:11:bf:06:
8b:89:e8:b3:e0:61:0d:fb:80:ed:0e:38:72:15:1b:
0f:7b:64:7f:03:7d:bf:2d:ad:4f:8e:77:4d:9f:03:
81:1e:28:3f:c4:23:5b:18:4d:63:07:52:3d:d8:07:
46:eb:73:f4:02:53:3c:5f:9e:9c:62:e2:b0:a9:e6:
b0:81:00:be:57:c9:af:fb:e2:3c:8e:88:81:6e:84:
b5:6d:62:85:f3:2e:fb:48:4c:3a:3a:bf:a2:51:60:
40:9f:ab:59:d1:61:70:6a:21:a1:60:34:59:20:0b:
27:56:b3:92:2b:da:e1:e1:46:5e:59:09:67:83:2a:
e7:c6:01:6a:3b:e0:11:b5:5f:49:57:43:ae:ae:8f:
d0:fc:67:89:60:c4:10:9d:92:55:1e:6d:69:e1:9c:
61:98:12:7f:f2:b4:39:40:4f:3d:f9:02:4e:27:14:
ee:56:25:8a:80:2e:f5:51:d2:01:8a:b8:71:55:b6:
a7:13:4a:27:7d:4b:c9:4f:75:88:21:d7:33:f5:3d:
f8:da:fb:94:a9:de:cf:38:03:cf:e1:9a:df:17:6b:
cd:d3:76:e2:ae:2f:d9:a8:f2:b8:bb:fc:a7:ad:07:
55:52:d9:2f:9d:88:06:ec:52:b5:08:94:90:89:33:
a9:f0:ad:2f:90:39:5d:8a:48:9f:ab:3d:39:d1:89:
da:9e:d9:e7:b6:10:a3:7c:a2:16:2c:44:d0:7f:e3:
a0:55:f6:bf:ae:0b:5d:19:b6:8b:d5:c9:03:57:f6:
ab:eb:4c:f0:29:cd:63:4f:b0:1f:8b:80:f4:d8:cf:
ef:fe:4f:b7:96:38:1d:a5:2f:12:6f:e1:31:ea:29:
f6:08:a8:06:2c:97:58:cb:b2:ca:3e:5c:d2:e2:2f:
72:09:2b:45:ac:9e:31:dd:74:98:a7:0c:48:83:99:
52:9e:0b:dd:5d:d9:eb:51:68:80:30:c2:1a:d1:99:
72:da:65
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Basic Constraints: critical
CA:TRUE
X509v3 Key Usage: critical
Certificate Sign, CRL Sign
X509v3 Subject Key Identifier:
4D:02:13:12:B6:97:0F:33:04:37:BC:59:51:D5:B4:5A:AF:A7:C3:B6
X509v3 CRL Distribution Points:
Full Name:
URI:http://193.188.192.110/crl/196.crl
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
a0:a5:18:20:59:c1:7c:10:a7:98:cd:9a:d3:e0:e8:78:dc:ff:
99:a4:e5:7e:3e:71:8e:81:dd:e8:76:6a:f3:e5:bf:1f:89:8f:
b0:1c:12:d9:0c:c8:8c:7d:f4:2a:1e:75:8a:b5:67:0e:ce:c3:
91:d9:e6:54:37:a7:eb:3b:17:ae:b1:a4:bf:e2:b7:bc:62:dc:
27:8f:8b:4c:b1:b4:3d:5c:e8:f7:29:3d:01:1d:df:55:3a:28:
7e:e5:06:d8:78:7f:70:90:1b:06:0b:57:7b:39:da:5e:bd:89:
2d:4f:ed:9e:dc:da:fa:9b:1b:3d:87:1b:14:74:71:1d:b3:b0:
e7:dd:ef:58:c6:79:cf:51:66:c0:0a:31:8f:e2:36:3a:0f:76:
e2:81:79:72:26:e0:10:6d:26:00:42:ba:bc:1c:32:af:5e:2b:
f4:9f:8f:c9:46:55:68:34:ac:40:50:dc:66:15:02:df:ac:2d:
06:ab:bf:aa:e9:b2:40:c6:f6:31:78:48:f1:5f:3c:e9:c8:82:
b5:d4:05:74:9b:bd:0d:f1:cc:b4:3a:5d:e8:8c:c1:f2:a0:ce:
54:b7:8e:a7:df:9b:74:62:2f:9e:79:4a:67:fc:0d:aa:2c:97:
f9:af:45:29:e4:f2:b7:19:be:d2:b7:ec:3d:11:7e:ae:dc:59:
e0:7c:40:f9:fc:4e:65:58:ef:43:a6:83:68:10:1a:6c:66:ef:
28:a1:a6:e8:0f:81:69:2e:1b:1b:90:8d:c5:18:a3:6b:a1:5e:
8c:bb:cb:d6:c7:c6:d0:43:0e:ad:54:09:60:c5:c1:00:68:6a:
69:e4:af:f1:15:bc:58:04:ff:a4:1d:37:36:a7:fc:77:41:8c:
d2:cc:11:86:0c:b0:74:96:8e:cc:90:5f:13:91:3c:45:3a:7d:
f9:a6:d5:e9:a1:cc:6e:d5:eb:94:62:b6:6a:9a:99:d7:97:9c:
e4:07:b8:02:91:b4:b4:8b:97:99:57:3d:70:06:0a:02:62:e3:
13:72:b6:d3:ab:d5:93:47:a3:0e:9b:9f:36:7e:da:84:6e:fc:
94:55:e1:a7:ee:3d:81:8e:ae:64:bd:94:f8:50:8d:3d:1b:4f:
97:0e:7b:c4:ff:a0:98:59:09:81:c0:e3:c2:c5:70:72:be:c6:
7c:72:4e:77:d5:be:42:2d:1a:2f:9e:36:40:df:8f:92:10:fe:
1d:5d:a2:cf:b7:98:6c:07:ae:9f:c2:0b:95:cf:e3:1c:2b:8e:
4a:23:f5:0d:99:51:e0:25:af:69:64:0b:e3:b1:96:4e:ab:e6:
f4:ea:81:52:b1:1b:9d:21:f6:1c:a4:a1:36:65:71:cf:1a:e4:
c1:f0:88:dd:2d:cc:79:df
Certificate purposes:
SSL client : No
SSL client CA : Yes
SSL server : No
SSL server CA : Yes
Netscape SSL server : No
Netscape SSL server CA : Yes
S/MIME signing : No
S/MIME signing CA : Yes
S/MIME encryption : No
S/MIME encryption CA : Yes
CRL signing : Yes
CRL signing CA : Yes
Any Purpose : Yes
Any Purpose CA : Yes
OCSP helper : Yes
OCSP helper CA : Yes
Time Stamp signing : No
Time Stamp signing CA : Yes
VPN Host Cert:
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 4889229180211302949 (0x43da0808fff81225)
Signature Algorithm: sha256WithRSAEncryption
Issuer: C = HU, ST = Budapest, L = Budapest, O = CyberPointer, OU = CP-P1, CN = CyberPointer Root CA
Validity
Not Before: Apr 18 08:33:05 2025 GMT
Not After : Apr 18 08:33:05 2027 GMT
Subject: C = HU, ST = Budapest, L = Budapest, O = CyberPointer, OU = CP-P1, CN = 193.188.192.110
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:b9:7a:a1:41:3e:8b:34:d1:ec:bc:43:3e:20:e9:
43:e2:53:6b:9a:1e:2d:e4:b7:0e:4e:7d:b6:2a:49:
be:37:ef:60:60:b7:27:61:66:dc:cc:40:33:3f:53:
2b:3b:73:ff:37:cc:e0:9f:28:61:8a:f6:4a:ea:c5:
ba:24:35:72:76:5d:5a:26:3e:e3:2d:39:cf:47:bc:
a3:46:96:61:f3:16:19:4e:1e:6f:f2:e6:59:9b:d3:
63:6c:83:28:a6:58:c2:2e:98:d4:8f:a1:26:82:00:
13:d6:6d:75:ba:b8:84:bc:04:d9:ac:6b:41:57:77:
71:2e:28:8b:22:15:11:c3:04:7c:42:c1:d6:db:0a:
7c:75:b9:45:80:f8:eb:48:09:52:8a:ff:09:fc:07:
67:2c:d2:d7:5b:1b:d4:ea:17:08:3f:d5:ce:1a:d2:
74:41:6a:39:8d:9e:40:3e:14:45:04:d0:05:80:00:
52:b8:f7:df:ff:7c:2f:ef:b3:5c:e5:82:ce:50:7f:
53:01:c8:5b:af:cc:0e:1f:c9:0c:43:a1:e3:20:d6:
a4:b6:f6:a6:bf:6f:1a:c0:b5:a7:a2:29:13:90:3e:
72:25:48:44:2a:79:0a:1e:4f:b4:98:e2:7a:ed:0d:
20:a6:88:51:6c:0d:04:58:0f:01:22:0a:da:d9:3f:
83:f7
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Key Usage: critical
Digital Signature, Key Encipherment
X509v3 Extended Key Usage:
TLS Web Server Authentication
X509v3 Subject Key Identifier:
7F:AA:B2:CF:F8:2D:AA:9D:85:F7:18:CE:84:13:C3:FA:08:85:EA:5C
X509v3 Authority Key Identifier:
4D:02:13:12:B6:97:0F:33:04:37:BC:59:51:D5:B4:5A:AF:A7:C3:B6
X509v3 Subject Alternative Name:
IP Address:193.188.192.110, DNS:protection1.cyberpointer.net
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
7a:9b:ef:cd:44:ad:94:3b:d7:b5:68:9e:f7:1d:2f:b8:89:35:
a2:23:38:fc:a2:7f:a4:51:a1:a5:c3:9b:2c:87:2d:8c:0d:8b:
4d:33:f0:54:41:d3:ba:cc:fc:66:84:1c:09:10:cb:41:f1:9a:
3a:ce:0e:35:b0:47:6a:a5:0e:41:6e:bf:0d:ca:7f:c7:58:a9:
c1:fa:8d:d9:c0:18:e4:6d:0e:d3:88:cd:3f:24:a0:39:4d:df:
7a:48:68:22:e6:29:5c:74:27:41:c9:60:8b:24:ee:aa:1f:d8:
37:01:47:66:23:a3:3c:ed:c0:8b:96:b9:c3:d2:ae:46:e6:45:
7c:cf:c1:30:67:5a:04:8d:fe:c5:19:72:32:e5:e2:0c:9a:6c:
67:36:5e:0d:72:75:b1:70:de:39:80:e9:8c:fb:0e:89:c4:db:
5a:18:37:50:ec:7b:3c:b6:34:05:cb:79:01:ec:3d:36:08:0e:
0a:d6:0b:b8:1c:c9:4f:b3:66:61:f0:2d:1d:0b:17:f9:eb:40:
5c:68:6b:ed:a0:9f:f0:52:1f:c5:5e:10:9e:e7:28:6a:d6:ec:
ab:3c:e1:fd:54:bb:4e:7f:2c:bc:8c:9c:b5:d8:41:7b:0e:fa:
4a:f9:a6:91:4a:91:b9:60:a5:12:f7:42:75:df:ac:3b:28:ec:
8a:64:f4:26:67:3f:a8:9a:70:28:0c:29:27:bb:4f:98:58:70:
2d:11:f3:00:2f:5c:2d:a9:3b:c1:28:7d:3b:1d:a6:67:2e:ae:
f0:82:98:2f:e9:1f:8c:ed:44:ce:db:cf:45:2b:00:41:10:d7:
e7:c5:3c:cd:64:4d:68:bb:f8:24:2a:59:06:07:dc:df:2e:ae:
57:cb:c6:8c:8f:d3:4d:c8:d5:f1:8b:92:ca:34:3b:db:90:86:
bd:bd:30:a0:c1:fa:c8:8b:96:4d:20:8e:51:d4:39:49:2e:bd:
6c:ea:24:72:e4:79:1e:1a:7a:aa:2c:40:ef:b4:be:10:33:ea:
5f:db:63:28:e8:d6:43:49:93:52:07:0f:42:a6:0d:73:31:77:
9b:35:be:e8:b3:b0:e5:a5:d9:e3:7e:37:7a:77:d2:c0:0f:67:
a6:9f:4e:56:33:8c:b1:e3:ea:bc:14:46:0b:fb:2f:b9:08:70:
77:06:f7:c3:6b:82:a8:ac:28:00:59:07:60:4a:9b:70:2a:73:
1e:4a:7b:a4:f6:fd:4a:62:f6:18:b8:b3:a9:39:40:06:f0:df:
0f:49:ae:d0:4e:6e:70:a9:85:f1:39:77:df:67:53:b5:24:90:
7b:dc:c9:30:f7:00:b3:09:b7:67:4c:82:07:e7:f1:82:34:4c:
f9:f1:9e:46:db:da:e3:b2
Certificate purposes:
SSL client : No
SSL client CA : No
SSL server : Yes
SSL server CA : No
Netscape SSL server : Yes
Netscape SSL server CA : No
S/MIME signing : No
S/MIME signing CA : No
S/MIME encryption : No
S/MIME encryption CA : No
CRL signing : No
CRL signing CA : No
Any Purpose : Yes
Any Purpose CA : Yes
OCSP helper : Yes
OCSP helper CA : No
Time Stamp signing : No
Time Stamp signing CA : No
VPN Client Cert:
Certificate:
Data:
Version: 3 (0x2)
Serial Number: 5295604347751810097 (0x497dc418d2c2c431)
Signature Algorithm: sha256WithRSAEncryption
Issuer: C = HU, ST = Budapest, L = Budapest, O = CyberPointer, OU = CP-P1, CN = CyberPointer Root CA
Validity
Not Before: Apr 18 08:37:26 2025 GMT
Not After : Apr 18 08:37:26 2027 GMT
Subject: C = HU, ST = Budapest, L = Budapest, O = CyberPointer, OU = CP-P1, CN = puffymikrotik@cyberpointer.net
Subject Public Key Info:
Public Key Algorithm: rsaEncryption
Public-Key: (2048 bit)
Modulus:
00:ad:ac:ec:07:16:66:c9:cd:62:99:c7:7d:4f:02:
cd:34:dc:cf:80:4f:aa:6d:1d:8d:02:a1:2f:51:e5:
d0:18:dd:05:da:80:a9:2b:3c:ad:4e:9e:ba:64:3b:
58:0a:9c:dd:cb:26:69:6b:80:1f:29:44:9b:ba:a4:
5f:18:8a:89:0c:9f:d9:fe:d2:57:e4:bb:c0:2d:7e:
5c:46:6c:b3:23:8e:04:34:b1:8d:ac:4a:e2:81:5d:
c8:8b:0b:77:d3:3a:e8:71:0e:2b:8d:27:ef:ec:0e:
25:18:23:d3:5a:50:63:8b:53:f8:46:98:b4:e9:df:
55:6f:31:a5:06:b6:ca:8e:ce:a4:2e:db:59:5e:dd:
3e:0a:b5:37:d1:df:47:08:5a:15:71:98:5b:f0:f1:
98:83:b7:ea:dd:30:a6:ee:64:0b:8b:98:b3:7c:9b:
78:88:4e:40:80:ad:b5:d6:be:ec:c7:4e:72:92:3a:
65:be:0b:69:63:ee:69:c9:d0:68:bc:03:3e:9c:23:
3d:aa:95:16:2d:6c:c7:eb:6b:4b:c4:a0:10:c9:7c:
cf:a5:56:97:1e:98:4c:70:65:76:d1:95:4d:79:48:
1f:8a:0e:6d:d7:8a:b4:4e:fd:68:33:7f:c5:3e:1a:
a5:a4:87:76:44:24:c3:2e:74:ca:0a:f5:1e:28:6b:
a2:d7
Exponent: 65537 (0x10001)
X509v3 extensions:
X509v3 Extended Key Usage:
TLS Web Client Authentication
X509v3 Subject Key Identifier:
96:B5:D0:9C:CF:58:3D:82:FA:9E:91:2C:E8:C0:98:99:52:79:1E:08
X509v3 Authority Key Identifier:
4D:02:13:12:B6:97:0F:33:04:37:BC:59:51:D5:B4:5A:AF:A7:C3:B6
X509v3 Subject Alternative Name:
email:puffymikrotik@cyberpointer.net
Signature Algorithm: sha256WithRSAEncryption
Signature Value:
83:3c:3d:fb:4b:a5:bd:88:58:d8:58:be:57:bf:84:4e:d1:53:
9d:c5:d7:e5:e4:01:d6:66:94:a5:bc:b2:2d:8b:56:c1:27:1f:
1d:57:be:00:2c:b0:8e:46:87:e5:bf:4e:e4:3a:11:3b:56:6b:
53:c7:48:82:59:aa:8e:55:c3:9b:4d:7b:a3:f0:18:4e:09:87:
44:52:ae:a6:d5:b5:ce:c9:7c:67:ba:74:b8:d5:cb:88:ee:ec:
3f:d2:3a:06:12:14:48:8a:f3:f8:b0:56:26:c3:e0:a8:a0:c3:
f2:7e:bf:7c:5a:54:d6:d3:f5:29:c1:ef:cb:db:9c:11:e7:be:
09:76:19:d3:3c:6a:e3:69:b6:a5:bd:16:34:4c:d9:20:cb:fb:
01:ac:44:7d:7a:35:5e:9a:be:65:10:ff:44:7d:2c:a2:30:b9:
b9:93:ba:2a:d9:1f:fb:93:15:fe:04:fe:74:d2:04:fa:6a:28:
52:60:a5:65:82:0f:9f:f9:c4:fb:c4:b4:a5:52:83:24:16:7f:
a9:c0:cb:a7:49:7b:43:cf:c3:1c:7f:1f:7f:ab:5a:38:a1:62:
ee:2b:ae:e5:8a:b7:c4:dc:df:01:11:2d:e0:c2:d5:5a:0c:9f:
89:6c:ae:26:03:bc:7d:8b:a7:3e:51:0f:20:7c:9a:a1:46:0f:
9d:8b:f2:58:90:7c:a8:6f:9d:ef:89:48:89:8b:df:90:ed:f6:
d2:91:fe:d0:21:b2:58:7f:31:62:da:5f:70:36:99:c3:e6:7e:
5a:9e:7f:75:05:34:19:f1:ca:8e:d8:b2:a5:65:50:db:30:97:
df:9e:b1:ef:d0:7b:fa:5a:87:c3:a3:4c:e3:e0:0c:86:9c:03:
fe:62:5d:f7:69:70:75:9d:ca:6e:57:80:65:8e:c4:eb:57:17:
4d:11:64:fb:ae:26:6a:12:56:58:06:7f:b4:69:5f:1f:6b:e7:
09:9c:9d:31:e2:fb:f9:44:95:eb:04:48:ba:76:92:6b:c4:cf:
bb:13:5c:5f:66:2a:b1:cb:50:b1:ef:a1:c4:33:89:60:8f:1d:
ee:73:fe:bd:3a:89:67:a5:a2:15:48:ca:53:0b:0e:f0:19:4c:
21:7d:c3:63:71:14:58:00:f1:5a:30:1e:cd:67:50:93:fb:4c:
d5:54:53:fd:f2:93:52:df:af:04:88:18:5a:bc:85:c6:06:02:
00:f5:ca:37:8f:05:ad:78:42:78:6b:79:76:74:be:21:98:53:
6d:97:21:85:4d:04:15:94:26:35:eb:bd:ae:5a:0e:ab:32:40:
2f:86:34:62:26:48:72:40:45:62:da:1b:0e:a0:71:ba:87:bd:
59:3b:a0:0d:96:58:d5:8e
Certificate purposes:
SSL client : Yes
SSL client CA : No
SSL server : No
SSL server CA : No
Netscape SSL server : No
Netscape SSL server CA : No
S/MIME signing : No
S/MIME signing CA : No
S/MIME encryption : No
S/MIME encryption CA : No
CRL signing : Yes
CRL signing CA : No
Any Purpose : Yes
Any Purpose CA : Yes
OCSP helper : Yes
OCSP helper CA : No
Time Stamp signing : No
Time Stamp signing CA : No
Certificates imported into Mikrotik:
154 KL A T name="strongswanCert" digest-algorithm=sha256 key-type=rsa country="HU" state="Budapest" locality="Budapest" organization="CyberPointer" unit="CP-P1" common-name="CyberPointer Root CA" key-size=4096 subject-alt-name="" days-valid=3650 trusted=yes
key-usage=key-cert-sign,crl-sign ca-crl-host="193.188.192.110" serial-number="2CB7DCD6AACFA4E8" fingerprint="0765213eec812ad2dba4f7e0677d276f50eba3595b2420daa92d29b8759df054" akid="" skid=4d021312b6970f330437bc5951d5b45aafa7c3b6
invalid-before=2025-04-18 10:26:19 invalid-after=2035-04-16 10:26:19 expires-after=520w6d2h53m58s

155 K I name="vpnHostCert" digest-algorithm=sha256 key-type=rsa country="HU" state="Budapest" locality="Budapest" organization="CyberPointer" unit="CP-P1" common-name="193.188.192.110" key-size=2048
subject-alt-name=IP:193.188.192.110,DNS:protection1.cyberpointer.net days-valid=730 trusted=no key-usage=digital-signature,key-encipherment,tls-server ca=strongswanCert serial-number="43DA0808FFF81225"
fingerprint="fed4ca7da29eb1f1d40b88a336ad776305c7b3fb86b345668ac34072a5c346a2" akid=4d021312b6970f330437bc5951d5b45aafa7c3b6 skid=7faab2cff82daa9d85f718ce8413c3fa0885ea5c invalid-before=2025-04-18 10:33:05 invalid-after=2027-04-18 10:33:05
expires-after=103w5d3h44s

156 K I name="PuffyMikrotikCert" digest-algorithm=sha256 key-type=rsa country="HU" state="Budapest" locality="Budapest" organization="CyberPointer" unit="CP-P1" common-name="puffymikrotik@cyberpointer.net" key-size=2048
subject-alt-name=email:puffymikrotik@cyberpointer.net days-valid=730 trusted=no key-usage=tls-client ca=strongswanCert serial-number="497DC418D2C2C431" fingerprint="562b998aa5c17d26dd3ac9017d0e9f329d7c5ed2682d15360164e701cbfe32a3"
akid=4d021312b6970f330437bc5951d5b45aafa7c3b6 skid=96b5d09ccf583d82fa9e912ce8c0989952791e08 invalid-before=2025-04-18 10:37:26 invalid-after=2027-04-18 10:37:26 expires-after=103w5d3h5m5s
Thank you!

Regards: DrCyberg

Statistics: Posted by drcyberg — Tue Apr 22, 2025 8:42 am



Viewing all articles
Browse latest Browse all 23620

Trending Articles