[Announce] ANNOUNCE: strongswan-4.1.6 released

Andreas Steffen andreas.steffen at strongswan.org
Tue Sep 4 13:57:05 CEST 2007


we are happy to announce the 4.1.6 release which brings a couple
of new features and improvements:

- Since some third party IKEv2 implementations run into
   problems with strongSwan announcing MOBIKE capability per
   default, MOBIKE can be disabled on a per-connection-basis
   using the mobike=no option. Whereas mobike=no disables the
   sending of the MOBIKE_SUPPORTED notification and the floating
   to UDP port 4500 with the IKE_AUTH request [even if no NAT
   situation has been detected], strongSwan will still support
   the MOBIKE protocol acting as a responder.

- the default ipsec routing table plus its corresponding priority
   used for inserting source routes has been changed from 100 to 220.
   For those users still not happy with the new default, it can be
   configured using the --with-ipsec-routing-table and
   --with-ipsec-routing-table-prio options ;-)

- the --enable-integrity-test configure option tests the
   integrity of the libstrongswan crypto code during the charon
   startup by computing a SHA-1 HMAC over the read-only TEXT and
   RODATA segments of the dynamically loaded library and comparing
   it to its compile-time value.

- the --disable-xauth-vid configure option disables the sending
   of the XAUTH vendor ID. This can be used as a workaround when
   interoperating with some Windows VPN clients that get into
   trouble upon reception of an XAUTH VID without eXtended
   AUTHentication having been configured.

Martin Willi       Andreas Steffen
IKEv2 Architect    Project Leader and IKEv1 Maintainer

Andreas Steffen                         andreas.steffen at strongswan.org
strongSwan - the Linux VPN Solution!                www.strongswan.org 

Institute for Internet Technologies and Applications
University of Applied Sciences Rapperswil
CH-8640 Rapperswil (Switzerland)

