From 0a9d51a49042a68daa15b0c74a2b7f152f52606b Mon Sep 17 00:00:00 2001 From: René Mayrhofer Date: Thu, 19 May 2011 13:37:29 +0200 Subject: Imported Upstream version 4.5.2 --- testing/tests/af-alg-ikev2/rw-cert/description.txt | 12 ++++++++++++ 1 file changed, 12 insertions(+) create mode 100644 testing/tests/af-alg-ikev2/rw-cert/description.txt (limited to 'testing/tests/af-alg-ikev2/rw-cert/description.txt') diff --git a/testing/tests/af-alg-ikev2/rw-cert/description.txt b/testing/tests/af-alg-ikev2/rw-cert/description.txt new file mode 100644 index 000000000..d0c5e9200 --- /dev/null +++ b/testing/tests/af-alg-ikev2/rw-cert/description.txt @@ -0,0 +1,12 @@ +The roadwarrior carol and the gateway moon use the Crypto API +of the Linux kernel via the af_alg userland interface for all symmetric +encryption and hash functions whereas roadwarrior dave uses the default +strongSwan cryptographical plugins aes des sha1 sha2 md5 gmp. +

+The roadwarriors carol and dave set up a connection each +to gateway moon. The authentication is based on X.509 certificates. +Upon the successful establishment of the IPsec tunnels, leftfirewall=yes +automatically inserts iptables-based firewall rules that let pass the tunneled traffic. +In order to test both tunnel and firewall, both carol and dave ping +the client alice behind the gateway moon. + -- cgit v1.2.3