[strongSwan] command to show IKE keys (SKEYID's) for decrypting packet captured messages

Noel Kuntze noel at familie-kuntze.de
Tue Jul 22 13:22:05 CEST 2014


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Hello Ashok,

No such command exists yet for strongSwan.
If you need to get the keys for the IPsec SAs, look at the output of "ip xfrm state".

Regards,
Noel Kuntze

GPG Key id: 0x63EC6658
Fingerprint: 23CA BB60 2146 05E7 7278 6592 3839 298F 63EC 6658
Am 22.07.2014 12:02, schrieb ashok kj:
> Hi All,
>
> Is there any command to show the keys(SKEYID's) used for the current session during IKE negotiation?
>
>
> Regards
> Ashok
>
>
> _______________________________________________
> Users mailing list
> Users at lists.strongswan.org
> https://lists.strongswan.org/mailman/listinfo/users

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/
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=3W9X
-----END PGP SIGNATURE-----



More information about the Users mailing list