[strongSwan] Multi rounds

Tobias Brunner tobias at strongswan.org
Tue Jul 10 10:40:14 CEST 2018

Hi Christian,

> You say on [1] that "The native iOS and OS X clients are known to work
> fine with multiple authentication rounds.", yet I have the server
> configured with multiple rounds using xauth but OSX is only requesting EAP

XAuth is only for IKEv1
EAP is only for IKEv2 (unless the xauth-eap plugin is used)

So if you use IKEv2 you can ignore that whole XAuth section (including
the multiple rounds subsection) in the description of the eap-radius plugin.


More information about the Users mailing list