Since this Client Software intends to track ipsec-tools development, it offers a
similar option set for configuring Internet Key Exchange negotiations.
A number of peer authentication methods and basic XAuth for user
authentication. Radius XAuth user authentication is not supported at this time.
Advanced Options
- Split
DNS Support
- Dead Peer
Detection
Firewall Traversal Options
- NAT Traversal
- NAT Keep
Alive
- IKE Fragmentation
- Packet
Pre Fragmentation
Authentications Methods
- Hybrid
RSA + XAuth
- Mutual
RSA + XAuth ( ipsec-tools cvs only )
- Mutual
PSK + XAuth ( ipsec-tools cvs only )
- Mutual
RSA
- Mutual
PSK
RSA Identification Types
PSK Identification Types
Exchange Modes
- Main
- Aggressive
- Modecfg
- Quick
- Informational
Phase1 Ciphers
Phase1 Hash Algorithms
Phase2 Transforms
- ESP-AES
- ESP-Blowfish
- ESP-3DES
- ESP-CAST
- ESP-DES
Phase2 HMAC Algorithms
Phase2 Options
- PFS is
supported
- Compression
is not supported
- Tunnel
mode is supported
- Transport
mode is not supported
Mode Config Attributes
- Address
- Netmask
- WINS/NBNS
Server
- DNS Server
- DNS Default
Domain
- Split
DNS Domains ( ipsec-tools cvs only )
- Banner
- Default
Domain ( ipsec-tools cvs only )
- Split
Network Include List ( ipsec-tools cvs only )
- Split
Network Exclude List ( ipsec-tools cvs only )