Hi Pavan,

strongSwan does not check the security strength of the PSK used. Thus
an empty PSK explicitly set in ipsec.secrets is admissible. The traffic
still gets encrypted, though.

Regards

Andreas

On 09.08.2018 15:14, Pavan Maganti wrote:
> Hi,
> 
> I am able to establsih IKEv2 tunnel with empty ("") PSK value used in
> ipsec.secrets file on both peers. Is this expected? Please clarify.
> 
> Regards,
> Pavan M

======================================================================
Andreas Steffen                         [email protected]
strongSwan - the Open Source VPN Solution!          www.strongswan.org
Institute for Networked Solutions
HSR University of Applied Sciences Rapperswil
CH-8640 Rapperswil (Switzerland)
===========================================================[INS-HSR]==

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

Reply via email to