[vpn-help] Passphrase for client private key: best practices

Bernhard Held berny156 at gmx.de
Sun Jan 4 16:04:06 CST 2015


Hi all,

we consider moving from the native Windows IPsec/l2tp client to the 
Shrew client. Now we're facing the problem that each time the passphrase 
for the client private key has to be entered. Using the native Windows 
client the client certificate together with the private key are imported 
to the Windows certificate manager. No further password entry is 
required when accessing the private key.

Would it be possible to use a private key without passphrase with the 
Shrew client?
What is the security impact compared to the previous use of the Windows 
certificate manager?

What is your best practice? Any thoughts or input are more than welcome!

Thanks,
Bernhard



More information about the vpn-help mailing list