Ross ROSS = Recommend OSS · open-source software intelligence for agents

strongswan/strongswan

strongSwan - IPsec-based VPN observed · 2026-08-28

github.com/strongswan/strongswan · homepage · C · NOASSERTION (other) observed · 2026-08-28

Health v2 · maintenance only

87/100

  • Activity 99
  • Release rhythm 63
  • Longevity 100

Flags: no_license

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-02. Adoption (stars, forks) is never an input.

  • gap_med: 97
  • age_days: 5788
  • days_rel: 86
  • days_push: 7
  • n_releases_24m: 8

Full methodology

Adoption not part of the score

2954 stars · 930 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

strongSwan is an open-source, modular IPsec-based VPN solution implementing the IKEv2 (and IKEv1) key exchange protocols for securing IP traffic. It supports site-to-site and remote-access VPNs with certificate and EAP authentication, and runs on Linux, Android, FreeBSD, macOS, and Windows.

Use cases

  • set up a site-to-site IPsec VPN between two office networks
  • run a self-hosted IKEv2 VPN server for remote access
  • connect a Linux or Android client to a corporate IPsec gateway
  • build policy- or route-based VPN tunnels with X.509 certificate authentication
  • authenticate VPN users with EAP-TLS or EAP-MSCHAPv2 via RADIUS
  • secure IPv6 traffic with IPsec tunnel or transport mode

When to choose

  • you need a standards-compliant IPsec/IKEv2 VPN on Linux or embedded systems
  • you want certificate-based or EAP user authentication with RADIUS support
  • you need site-to-site tunnels between heterogeneous vendors
  • you require IPv6 support, MOBIKE, NAT-traversal, or dead peer detection

When to avoid

  • you want a simple WireGuard-style setup with minimal configuration
  • you need a user-friendly GUI-first consumer VPN product
  • you require OpenVPN or TLS-based VPN protocols rather than IPsec

Facets

application · maturity stable

security vpn networking cryptography auth security networking privacy self-hosted windows bsd cross-platform ipsec ikev2 ikev1 vpn-server vpn-client site-to-site x509 eap nat-traversal c linux macos android

7 sources

Member repositories

RepositoryRoleHealth v2
strongswan/strongswanmain87

For agents

markdown · JSON · MCP: product_card(name="strongswan/strongswan")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem