Hi Pavan, strongSwan does not check the security strength of the PSK used. Thus an empty PSK explicitly set in ipsec.secrets is admissible. The traffic still gets encrypted, though.
Regards
Andreas
On 09.08.2018 15:14, Pavan Maganti wrote:
> Hi,
>
> I am able to establsih IKEv2 tunnel with empty ("") PSK value used in
> ipsec.secrets file on both peers. Is this expected? Please clarify.
>
> Regards,
> Pavan M
======================================================================
Andreas Steffen [email protected]
strongSwan - the Open Source VPN Solution! www.strongswan.org
Institute for Networked Solutions
HSR University of Applied Sciences Rapperswil
CH-8640 Rapperswil (Switzerland)
===========================================================[INS-HSR]==
smime.p7s
Description: S/MIME Cryptographic Signature
