strongswan - IPsec VPN solution metapackage

Install Howto

  1. Update the package index:
    # sudo apt-get update
  2. Install strongswan deb package:
    # sudo apt-get install strongswan




2018-06-04 - Yves-Alexis Perez <>
strongswan (5.6.3-1) unstable; urgency=medium
* New upstream version 5.6.2
* update charon-systemd AppArmor profile (closes: #896813)
* New upstream version 5.6.3
- fix a DoS vulnerability in the IKEv2 key derivation if the openssl
plugin is used in FIPS mode and HMAC-MD5 is negotiated as PRF
- fix a vulnerability in the stroke plugin, which did not check the
received length before reading a message from the control socket
* d/p/05_charon-nm-Fix-building-list-of-DNS-MDNS-servers-with removed
2018-04-13 - Yves-Alexis Perez <>
strongswan (5.6.2-2) unstable; urgency=medium
* charon-nm: Fix building list of DNS/MDNS servers with libnm
* d/control: drop b-d on n-m-dev and make libnm-dev linux-any
(closes: #895434)
* d/compat bumped to 10
* d/rules: drop parallel and autoreconf from dh, done with compat 10
2018-02-20 - Yves-Alexis Perez <>
strongswan (5.6.2-1) unstable; urgency=medium
* d/NEWS: add information about disabled algorithms (closes: #883072)
* d/control: remove Romain Fran├žoise from uploaders
* strongswan-libcharon: add bypass-lan plugin
* New upstream version 5.6.2
- Fix denial of service vulnerability in the parser for PKCS#1 RSASSA-PSS
signatures (CVE-2018-6459)
* d/control: move Vcs to salsa
* d/control: update build-deps for libnm port (closes: #862885)
* install tpm_extendpcr binary in libstrongswan-extra-plugins
2017-12-17 - Yves-Alexis Perez <>
strongswan (5.6.1-3) unstable; urgency=medium
* move updown plugin from -starter to -libcharon.             closes: #884578
* debian/control:
- update standards version to 4.1.2.
2017-11-23 - Yves-Alexis Perez <>
strongswan (5.6.1-2) unstable; urgency=medium
* move counters plugin from -starter to -libcharon. closes: #882431
2017-11-21 - Yves-Alexis Perez <>
strongswan (5.6.1-1) unstable; urgency=medium
* debian/control:
- remove strongswan-ike{,v1,v2} packages.                   closes: #878979
* New upstream version 5.6.1
- fix FTBFS with glibc 2.26+.                               closes: #880561
* debian/rules: explicitly enable tpm plugin
* debian/strongswan-starter.install: install counters plugin
* debian/libstrongswan.install: install MGF1 plugin
* debian/libstrongswan-extra-plugins.install: install tpm plugin
* debian/control:
- update standards version to 4.1.1
- replace dh-systemd build-dep by updated build-dep on debhelper
2017-09-03 - Yves-Alexis Perez <>
strongswan (5.6.0-2) unstable; urgency=medium
* debian/rules:
- only use dh_missing --fail-missing when doing an architecture dependent
packages.                                                   closes: #874152

