Hide Forgot
The same issue on rhel-6 too. libreswan-3.15-5.1.el6 +++ This bug was initially created as a clone of Bug #1315412 +++ Description of problem: Based on the bug 1265410, crl-strict option is new variant of option strictcrlpolicy, which is marked as obsolete, but ipsec.conf manpage does not contain any mention about crl-strict option. There is only strictcrlpolicy option in ipsec.conf manpage. Version-Release number of selected component (if applicable): libreswan-3.15-5.el7_1 How reproducible: 100% Steps to Reproduce: # man ipsec.conf | col -b | grep 'crl-strict' # man ipsec.conf | col -b | grep 'strictcrlpolicy' Actual results: There is no mention about crl-strict option in ipsec.conf manpage. Expected results: There is mention about crl-strict option in ipsec.conf manpage and this option is main. Additional info:
this is already fixed upstream and will come in via the rebase in 7.[34] and it srhel-6.8 backport.
Since the problem described in this bug report should be resolved in a recent advisory, it has been closed with a resolution of ERRATA. For information on the advisory, and where to find the updated files, follow the link below. If the solution does not work for you, open a new bug report. https://rhn.redhat.com/errata/RHBA-2017-0575.html