vtun/README.md

19 lines
652 B
Markdown

This is a fork of [VTUN](http://vtun.sourceforge.net/), with the
following changes:
* OpenSSL was replaced by Libsodium (this currently requires code from
the [git repository](https://github.com/jedisct1/libsodium) to be
compiled until version 1.0.4 is out).
* Unauthenticated encryption schemes were replaced with aesni and
pclmulqdq-accelerated AES256-GCM.
* The static, shared key was replaced by an ephemeral keys exchange with
Curve25519. The PSK is now only used to sign ephemeral public keys and
parameters.
* Protection against replay attacks was added.
* Passwords are not kept in memory, guarded memory allocations are
used for secrets.