ce048c30ff
With IKEv1 we transmit both public DH factors (used to derive the initial IV) besides the shared secret. So these messages could get significantly larger than 1024 bytes, depending on the DH group (modp2048 just about fits into it). The new default of 2048 bytes should be fine up to modp4096 and for larger groups the buffer size may be increased (an error is logged should this happen). |
||
---|---|---|
.. | ||
options | ||
plugins | ||
.gitignore | ||
Makefile.am | ||
default.opt | ||
format-options.py | ||
strongswan.conf | ||
strongswan.conf.5.head.in | ||
strongswan.conf.5.tail.in |