[strongSwan] Implications of Weak DH / Logjam on IPSec

Gerd v. Egidy lists at egidy.de
Thu May 21 15:42:11 CEST 2015


Hi,

> It is very interesting to
> note that the Windows 7/8 Agile IKEv2 VPN client which otherwise is
> a great application does not propose anything stronger than the
> 1024 bit DH group.

And there is no way (registry or similar) to fix this?

Do you know offhand about other common mobile clients? Does the current iOS 8 
IKEv1 client support MODP2048? How about the stock Android client?

Kind regards,

Gerd



More information about the Users mailing list