From: | Adam Carter <adamcarter3@×××××.com> | ||
---|---|---|---|
To: | "gentoo-user@l.g.o" <gentoo-user@l.g.o> | ||
Subject: | Re: [gentoo-user] Traffic Intensive IPSec Tunnel | ||
Date: | Mon, 13 May 2013 02:13:36 | ||
Message-Id: | CAC=wYCHtgS+_sWH4cFhSZ+_ZHhkOGxfcCqi=m5weB6p8v-_auw@mail.gmail.com | ||
In Reply to: | Re: [gentoo-user] Traffic Intensive IPSec Tunnel by Mick |
1 | > |
2 | > You can read a comparison between the *Swans here, but things have moved on |
3 | > since; e.g. StrongSwan supports IKEv1 in Aggressive Mode, |
4 | > |
5 | |
6 | Aggressive mode with pre-shared keys is vulnerable to offline dictionary |
7 | attack so you might as well use main mode. If for some reason you have to |
8 | use aggressive mode use a long randomly generated PSK. |
Subject | Author |
---|---|
Re: [gentoo-user] Traffic Intensive IPSec Tunnel | Mick <michaelkintzios@×××××.com> |