Hello,

On Tue, November 1, 2011 1:56 pm, Paul Wouters wrote:
> On Tue, 1 Nov 2011, Yoav Nir wrote:
>> Raw RSA keys work. If there is an introducer that tells both sides about
>> each other, a shared secret also works. Shared secrets are very secure
>> if you generate them randomly.
>
> PSK's have problems when trying to distisnguish multiple road warriors
> with different PSKs using Main Mode in IKEv1.

  That problem is being addressed:

      http://tools.ietf.org/html/draft-harkins-ipsecme-spsk-auth-05

  regards,

  Dan.


_______________________________________________
IPsec mailing list
IPsec@ietf.org
https://www.ietf.org/mailman/listinfo/ipsec

Reply via email to