OpenConnect SSL VPN server compatible with Cisco's AnyConnect VPN protocol

OpenConnect server (ocserv) is an SSL VPN server. Its purpose is to be a secure, small, fast and configurable VPN server. It implements the OpenConnect SSL VPN protocol, and has also (currently experimental) compatibility with clients using the AnyConnect SSL VPN protocol. The OpenConnect protocol provides a dual TCP/UDP VPN channel, and uses the standard IETF security protocols to secure it.

Ocserv's main features are security through privilege separation and sandboxing, accounting, and resilience due to a combined use of TCP and UDP. Authentication occurs in an isolated security module process, and each user is assigned an unprivileged worker process, and a networking (tun) device. That not only eases the control of the resources of each user or group of users, but also prevents data leak (e.g., heartbleed-style attacks), and privilege escalation due to any bug on the VPN handling (worker) process. A management interface allows for viewing and querying logged-in users.

Source Files
Filename Size Changed Actions
_service 0000000058 58 Bytes over 3 years
ocserv.changes 0000000301 301 Bytes over 3 years
ocserv.init 0000001957 1.91 KB almost 6 years
ocserv.spec 0000004018 3.92 KB over 3 years
Comments for ocserv 0