[strongSwan] Security Comparison

2018-07-18 Thread Christian Salway
I was just doing some research focusing on the security of the data over a VPN connection - and the chap in the following link has marked OpenVPN, which uses RSA, as being more secure than IKEv2 IPSEC https://thebestvpn.com/pptp-l2tp-openvpn-sstp-ikev2-protocols/

Re: [strongSwan] Server Not Decrypting on a Cellular Connection

2018-07-18 Thread Tobias Brunner
Hi Jody, > I’m having an issue where Strongswan is unable to decrypt websites or serve > email to a cell phone that is connected to the VPN of said server via a > cellular connection. However, when the phone is connected to the VPN via > WiFi, the VPN is able to serve the websites and email

Re: [strongSwan] Multiple Authentication Rounds

2018-07-18 Thread Tobias Brunner
Hi Christian, > To quote your page [1] "With IKEv2 it is possible to use multiple > authentication rounds" This refers to using multiple authentication rounds per RFC 4739 [1]. There aren't that many implementations that support it (i.e. neither Windows, nor macOS does). > could this be PSK and

Re: [strongSwan] Can't connect to Strongswan

2018-07-18 Thread Tobias Brunner
Hi Alexander, > Interestingly enough, there are different error messages. When connecting > with Linux, the key parts of the log seem to be: > > Jul 18 15:05:56 below charon: 07[ENC] parsed ID_PROT request 0 [ SA V V V V V > ] > Jul 18 15:05:56 below charon: 07[CFG] looking for an ike config

[strongSwan] Can't connect to Strongswan

2018-07-18 Thread Alexander v. Below
Hello, I have set up strongswan, but I can’t connect from either Linux nor macOS Interestingly enough, there are different error messages. When connecting with Linux, the key parts of the log seem to be: Jul 18 15:05:56 below charon: 07[ENC] parsed ID_PROT request 0 [ SA V V V V V ] Jul 18