Skip to content

Commit 4940fe2

Browse files
committed
Updated README
1 parent 0dcad45 commit 4940fe2

File tree

1 file changed

+2
-2
lines changed

1 file changed

+2
-2
lines changed

README.md

+2-2
Original file line numberDiff line numberDiff line change
@@ -24,8 +24,8 @@ This project contains the source code for an unofficial Linux client for Check P
2424
* Certificate authentication via provided client certificate (PFX, PEM, or HW token)
2525
* HW token support via PKCS11 (only with IPSec tunnel)
2626
* GTK frontend with tray icon
27-
* SSL tunnel via Linux TUN device
2827
* IPSec tunnel via Linux native kernel XFRM interface or TCPT/TUN transport
28+
* SSL tunnel via Linux TUN device (deprecated in favour of IPSec/TCPT)
2929
* Store passwords in the keychain using Secret Service API
3030
* Automatic IPSec tunnel reconnection without authentication (via optional parameter)
3131

@@ -72,7 +72,7 @@ By default, it will use kernel IPSec infrastructure with UDP-based tunnel over p
7272
In some environments those ports may be blocked by the firewall, in this case use the `ike-transport=tcpt` and `esp-transport=tcpt` options
7373
to tunnel IPSec traffic over TCP port 443. Note that TCPT transport is slower than native IPSec over UDP.
7474

75-
For older VPN Servers or in case they don't have IPSec enabled, the legacy SSL tunnel can be used as well, selected with `tunnel-type=ssl`.
75+
For older VPN servers or in case they don't have IPSec enabled, the legacy SSL tunnel can be used as well, selected with `tunnel-type=ssl`.
7676
SSL tunnel has a limited support for authentication types: no browser-based SSO, no hardware token support, no MFA in combination with the certificates.
7777

7878
| | SSL | IPSec |

0 commit comments

Comments
 (0)