| Port details on branch 2026Q3 |
- strongswan Open Source IKEv2 IPsec-based VPN solution
- 6.1.0 security
=0 6.1.0Version of this port present on the latest quarterly branch. - Maintainer: rcm@FreeBSD.org
 - Port Added: 2026-09-12 17:12:04
- Last Update: 2026-09-13 19:39:11
- Commit Hash: 28b521d
- Also Listed In: net-vpn
- License: GPLv2
- WWW:
- https://www.strongswan.org
- Description:
- Strongswan is an open source IPsec-based VPN solution.
Strongswan for FreeBSD implements both the IKEv1 and IKEv2 (RFC 5996) key
exchange protocols.
¦ ¦ ¦ ¦ 
- Manual pages:
-
- pkg-plist: as obtained via:
make generate-plist - USE_RC_SUBR (Service Scripts)
-
- Dependency lines:
-
- strongswan>0:security/strongswan
- To install the port:
- cd /usr/ports/security/strongswan/ && make install clean
- To add the package, run one of these commands:
- pkg install security/strongswan
- pkg install strongswan
NOTE: If this package has multiple flavors (see below), then use one of them instead of the name specified above.- PKGNAME: strongswan
- Flavors: there is no flavor information for this port.
- distinfo:
- TIMESTAMP = 1789061339
SHA256 (strongswan-6.1.0.tar.bz2) = fe6c97481298767213cfc2e9a1da29fdd8018d481ff4cb9cf0283099654f20d4
SIZE (strongswan-6.1.0.tar.bz2) = 4620545
No package information for this port in our database- Sometimes this happens. Not all ports have packages. Perhaps there is a build error. Check the fallout link:

- Dependencies
- NOTE: FreshPorts displays only information on required and default dependencies. Optional dependencies are not covered.
- Build dependencies:
-
- pkgconf>=1.3.0_1 : devel/pkgconf
- Library dependencies:
-
- libcurl.so : ftp/curl
- There are no ports dependent upon this port
Configuration Options:
- ===> The following configuration options are available for strongswan-6.1.0:
CTR=off: Enable CTR cipher mode wrapper plugin
CURL=on: Enable CURL to fetch CRL/OCSP
DHCP=off: Enable DHCP based attribute provider plugin
EAPAKA3GPP2=off: Enable EAP AKA with 3gpp2 backend
EAPDYNAMIC=off: Enable EAP dynamic proxy module
EAPRADIUS=off: Enable EAP Radius proxy authentication
EAPSIMFILE=off: Enable EAP SIM with file backend
FARP=off: Enable farp plugin
FIPS_PRF=off: Enable FIPS PRF software implementation plugin
GCM=on: Enable GCM AEAD wrapper crypto plugin
IKEV1=on: Enable IKEv1 support
IPSECKEY=off: Enable authentication with IPSECKEY resource records with DNSSEC
KDF=on: Enable KDF (prf+) implementation plugin
KERNELLIBIPSEC=off: Enable IPSec userland backend
LDAP=off: LDAP protocol support
LOADTESTER=off: Enable load testing plugin
MEDIATION=off: Enable IKEv2 Mediation Extension
ML=on: Enable Module-Lattice-based crypto plugin
MYSQL=off: MySQL database support
PKCS11=off: Enable PKCS11 token support
PKI=on: Enable PKI tools
PYTHON=off: Python VICI protocol plugin
SMP=off: Enable XML-based management protocol (DEPRECATED)
SQLITE=off: SQLite database support
STROKE=off: Enable stroke management protcol (DEPRECATED)
SWANCTL=on: Install swanctl (requires VICI)
TESTVECTOR=off: Enable crypto test vectors
TPM=off: Enable TPM plugin
TSS2=off: Enable TPM 2.0 TSS2 library
UNBOUND=off: Enable DNSSEC-enabled resolver
UNITY=off: Enable Cisco Unity extension plugin
VICI=on: Enable VICI management protocol
XAUTH=off: Enable XAuth password verification
====> Options available for the single PRINTF_HOOKS: you have to select exactly one of them
BUILTIN=on: Use builtin printf hooks
LIBC=off: Use libc printf hooks
VSTR=off: Use devel/vstr printf hooks
===> Use 'make config' to modify these settings
- Options name:
- security_strongswan
- USES:
- cpe libtool:keepla pkgconfig ssl tar:bzip2
- pkg-message:
- For install:
- The default strongSwan configuration interface have been updated to vici since version 5.9.2_1.
To use the stroke interface by default either compile the port without the vici option or
set 'strongswan_interface="stroke"' in your rc.conf file.
- If upgrading from > 5.9.2_1:
- The default strongSwan configuration interface have been updated to vici.
To use the stroke interface by default either compile the port without the vici option or
set 'strongswan_interface="stroke"' in your rc.conf file.
- Master Sites:
|
Number of commits found: 2
| Commit History - (may be incomplete: for full details, see links to repositories near top of page) |
| Commit | Credits | Log message |
6.1.0 13 Sep 2026 19:39:11
    |
R. Christian McDonald (rcm)  |
security/strongswan: Update 6.0.7 => 6.1.0
Changelog:
https://github.com/strongswan/strongswan/releases/tag/6.1.0
PR: 298372
MFH: 2026Q3
Security: CVE-2026-78123
Security: CVE-2026-78124
Security: CVE-2026-78126
Security: CVE-2026-78127
Security: CVE-2026-78129
Security: CVE-2026-78130
Security: CVE-2026-78131
Security: CVE-2026-78132
Security: CVE-2026-78133
Security: CVE-2026-78134
Security: CVE-2026-78135
Sponsored by: Rubicon Communications, LLC ("Netgate")
(cherry picked from commit 5a7f75878c1b8dabb3b333f523eba2c1c958ed8a) |
6.0.7 12 Sep 2026 17:10:16
    |
R. Christian McDonald (rcm)  |
security/strongswan: Take over maintainership
PR: 298404
Approved by: diizzy, vvd
MFH: 2026Q3
Sponsored by: Rubicon Communications, LLC ("Netgate")
(cherry picked from commit e0d875b0cc31ff6f10dd3cf6090fd8d10e1d27cf) |
Number of commits found: 2
|