Ipsec-tools interoperability chart

Symetric modes

Peer Authentication methods
Pre-Shared Key RSA Sig
Ipsec-Tools' Racoon HEAD OK OK
Ipsec-Tools' Racoon 5.2 OK OK
Kame's Racoon 0.3 OK (Untested) OK (Untested)
OpenSwan 2.3 OK (Untested) OK (Untested) 1
Cisco Concentrator 3k OK OK
SideWinder OK (Untested) OK
Solaris 10 iked Not OK Not OK

1 : With the plainrsa tool ?

XAuth modes, racoon as server

Peer Authentication methods Extensions
Pre-Shared Key + XAuth Hybrid RSASig + XAuth RSA Sig + XAuth Mode Config Cisco Unity
Ipsec-Tools' Racoon HEAD OK OK OK OK OK
Ipsec-Tools' Racoon 5.2 N/A OK N/A OK OK
OpenSwan 2.3 OK (Untested) N/A N/A N/A N/A
Cisco VPN Client OK 1 OK 2 OK 3 OK OK

1 : Shown as group authentication
2 : Shown as mutual group authentication ; the group password is ignored
3 : Shown as certificates

XAuth modes, racoon as client

Peer Authentication methods Extensions
Pre-Shared Key + XAuth Hybrid RSASig + XAuth RSA Sig + XAuth Mode Config Cisco Unity
Ipsec-Tools' Racoon HEAD OK OK OK OK 1 OK 1
Ipsec-Tools' Racoon 5.2 N/A OK N/A OK 1 OK 1
OpenSwan 2.3 OK (Untested) N/A N/A Unknown Unknown
Cisco Concentrator 3k OK Not OK 2 OK OK 1 OK 1

1 : Racoon supports most of the options, by the way of scripts
2 : Uses an unkown proprietary extension for the group password

Legend

Back - contact me

Page last modified the 26/10/2005 - XHTML 1.1 strict and CSS 2.0.