strongswan - IPsec-based VPN solution

Property Value
Distribution openSUSE Tumbleweed
Repository openSUSE Oss all
Package filename strongswan-5.6.3-1.4.x86_64.rpm
Package name strongswan
Package version 5.6.3
Package release 1.4
Package architecture x86_64
Package type rpm
Category Productivity/Networking/Security
License GPL-2.0-or-later
Maintainer -
Download size 40.96 KB
Installed size 2.29 KB
StrongSwan is an IPsec-based VPN solution for Linux.
* Implements both the IKEv1 and IKEv2 (RFC 4306) key exchange protocols
* Fully tested support of IPv6 IPsec tunnel and transport connections
* Dynamic IP address and interface update with IKEv2 MOBIKE (RFC 4555)
* Automatic insertion and deletion of IPsec-policy-based firewall rules
* Strong 128/192/256 bit AES or Camellia encryption, 3DES support
* NAT Traversal via UDP encapsulation and port floating (RFC 3947)
* Dead Peer Detection (DPD, RFC 3706) takes care of dangling tunnels
* Static virtual IP addresses and IKEv1 ModeConfig pull and push modes
* XAUTH server and client functionality on top of IKEv1 Main Mode authentication
* Virtual IP address pool managed by IKE daemon or SQL database
* Secure IKEv2 EAP user authentication (EAP-SIM, EAP-AKA, EAP-MSCHAPv2, etc.)
* Optional relaying of EAP messages to AAA server via EAP-RADIUS plugin
* Support of IKEv2 Multiple Authentication Exchanges (RFC 4739)
* Authentication based on X.509 certificates or preshared keys
* Generation of a default self-signed certificate during first strongSwan startup
* Retrieval and local caching of Certificate Revocation Lists via HTTP or LDAP
* Full support of the Online Certificate Status Protocol (OCSP, RCF 2560).
* CA management (OCSP and CRL URIs, default LDAP server)
* Powerful IPsec policies based on wildcards or intermediate CAs
* Group policies based on X.509 attribute certificates (RFC 3281)
* Storage of RSA private keys and certificates on a smartcard (PKCS #11 interface)
* Modular plugins for crypto algorithms and relational database interfaces
* Support of elliptic curve DH groups and ECDSA certificates (Suite B, RFC 4869)
* Optional built-in integrity and crypto tests for plugins and libraries
* Linux desktop integration via the strongSwan NetworkManager applet
This package triggers the installation of both, IKEv1 and IKEv2 daemons.


Package Version Architecture Repository
strongswan-5.6.3-1.4.i586.rpm 5.6.3 i586 openSUSE Oss
strongswan - - -


Name Value
strongswan-ipsec = 5.6.3
systemd -


Name Value
strongswan = 5.6.3-1.4
strongswan(x86-64) = 5.6.3-1.4


Type URL
Binary Package strongswan-5.6.3-1.4.x86_64.rpm
Source Package strongswan-5.6.3-1.4.src.rpm

Install Howto

Install strongswan rpm package:

# zypper install strongswan



See Also

Package Description
strongswan-doc-5.6.3-1.4.noarch.rpm Documentation for strongSwan
strongswan-hmac-5.6.3-1.4.i586.rpm HMAC files for FIPS-140-2 integrity in strongSwan
strongswan-hmac-5.6.3-1.4.x86_64.rpm HMAC files for FIPS-140-2 integrity in strongSwan
strongswan-ipsec-5.6.3-1.4.i586.rpm IPsec-based VPN solution
strongswan-ipsec-5.6.3-1.4.x86_64.rpm IPsec-based VPN solution
strongswan-libs0-5.6.3-1.4.i586.rpm strongSwan core libraries and basic plugins
strongswan-libs0-5.6.3-1.4.x86_64.rpm strongSwan core libraries and basic plugins
strongswan-mysql-5.6.3-1.4.i586.rpm MySQL plugin for strongSwan
strongswan-mysql-5.6.3-1.4.x86_64.rpm MySQL plugin for strongSwan
strongswan-nm-5.6.3-1.4.i586.rpm NetworkManager plugin for strongSwan
strongswan-nm-5.6.3-1.4.x86_64.rpm NetworkManager plugin for strongSwan
strongswan-sqlite-5.6.3-1.4.i586.rpm SQLite plugin for strongSwan
strongswan-sqlite-5.6.3-1.4.x86_64.rpm SQLite plugin for strongSwan
stunnel-5.49-2.1.i586.rpm Universal SSL Tunnel
stunnel-5.49-2.1.x86_64.rpm Universal SSL Tunnel