[Swan] Looks like loading preshared keys does in fact need NSS

Paul Wouters pwouters at redhat.com
Fri Jun 28 17:42:35 EEST 2013


On Fri, 28 Jun 2013, Greg Scott wrote:

>> If you only use PSK, then remove all but the PSK lines from the secrets file.
>
> I wonder if I have my definition of a PSK wrong?  Each node has a unique RSA key that the other nodes know about.

PSK = Pre Shared Key, which means a secret like "asdkjhafjglasgasldjgdljkbfas"
RSA = RSA public/private key pair

PreShared Key does not mean "pre sharing RSA keys". I will make a note
in the documentation because this is actually something I never
considered misleading, but it sure is!

Paul


More information about the Swan mailing list