[strongSwan] RFC 5639 Support for ECC Brainpool Curves for IKEv2 Key Exchange

Martin Willi martin at strongswan.org
Thu Feb 28 09:04:03 CET 2013


Hi Adrian,

> Can anyone provide me any information on if strongSwan currently
> support the following RFC or not?

No, strongSwan currently does not support brainpool curves in any form.
RFC 5639 defines the use in certificates only. For the use in the DH key
exchange, an additional standard would be required, which as far as I
know is not finalized yet, see [1].

Best regards
Martin

[1]http://tools.ietf.org/html/draft-merkle-ikev2-ke-brainpool-03





More information about the Users mailing list