[strongSwan] scepclient and EC pubkey support

Tobias Brunner tobias at strongswan.org
Wed Jun 13 17:03:35 CEST 2018


> The SCEP protocol doesn't support elliptic curve algorithms — It's RSA-only.

Just for reference, SCEP, as defined in the latest version of the draft,
doesn't seem have that limitation anymore [1].  (strongSwan's scepclient
is, of course, based on version 11 of the old draft, so...)


[1] https://tools.ietf.org/html/draft-gutmann-scep-10#section-3.1

More information about the Users mailing list