diff options
-rw-r--r-- | man/ipsec.conf.5.in | 1 | ||||
-rw-r--r-- | man/strongswan.conf.5.in | 10 |
2 files changed, 11 insertions, 0 deletions
diff --git a/man/ipsec.conf.5.in b/man/ipsec.conf.5.in index ca77ee7de..837a2055a 100644 --- a/man/ipsec.conf.5.in +++ b/man/ipsec.conf.5.in @@ -523,6 +523,7 @@ an optional EAP method can be appended. Currently defined methods are .BR eap-sim , .BR eap-tls , .BR eap-ttls , +.BR eap-dynamic , and .BR eap-radius . Alternatively, IANA assigned EAP method numbers are accepted. Vendor specific diff --git a/man/strongswan.conf.5.in b/man/strongswan.conf.5.in index 4fba2344b..8df6cf1fa 100644 --- a/man/strongswan.conf.5.in +++ b/man/strongswan.conf.5.in @@ -303,6 +303,16 @@ enable loaded duplicheck plugin .BR charon.plugins.eap-aka-3ggp2.seq_check .TP +.BR charon.plugins.eap-dynamic.preferred +The preferred EAP method(s) to be used. If it is not given the first +registered method will be used initially. If a comma separated list is given +the methods are tried in the given order before trying the rest of the +registered methods. +.TP +.BR charon.plugins.eap-dynamic.prefer_user " [no]" +If enabled the EAP methods proposed in an EAP-Nak message sent by the peer are +preferred over the methods registered locally. +.TP .BR charon.plugins.eap-gtc.backend " [pam]" XAuth backend to be used for credential verification .TP |