strongSwan KVM Tests / ikev2 / rw-eap-aka-rsa

Test ikev2/rw-eap-aka-rsa

Description

The roadwarrior carol sets up a connection to gateway moon. At the outset the gateway authenticates itself to the client by sending an IKEv2 digital signature accompanied by an X.509 certificate.

Next carol uses the Authentication and Key Agreement (EAP-AKA) method of the Extensible Authentication Protocol to authenticate herself. This EAP method used in UMTS, but here a secret defined in swanctl.conf is used instead of a USIM/(R)UIM device.

alice carol moon

moon

 

carol

 

tcpdump