Hello,
On Tue, November 1, 2011 1:56 pm, Paul Wouters wrote:
> On Tue, 1 Nov 2011, Yoav Nir wrote:
>> Raw RSA keys work. If there is an introducer that tells both sides about
>> each other, a shared secret also works. Shared secrets are very secure
>> if you generate them randomly.
>
> PSK's have problems when trying to distisnguish multiple road warriors
> with different PSKs using Main Mode in IKEv1.
That problem is being addressed:
http://tools.ietf.org/html/draft-harkins-ipsecme-spsk-auth-05
regards,
Dan.
_______________________________________________
IPsec mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/ipsec