Hello, On Tue, November 1, 2011 1:56 pm, Paul Wouters wrote: > On Tue, 1 Nov 2011, Yoav Nir wrote: >> Raw RSA keys work. If there is an introducer that tells both sides about >> each other, a shared secret also works. Shared secrets are very secure >> if you generate them randomly. > > PSK's have problems when trying to distisnguish multiple road warriors > with different PSKs using Main Mode in IKEv1.
That problem is being addressed: http://tools.ietf.org/html/draft-harkins-ipsecme-spsk-auth-05 regards, Dan. _______________________________________________ IPsec mailing list IPsec@ietf.org https://www.ietf.org/mailman/listinfo/ipsec