IKE Preshared Key from Aggressive Mode VPNs
Dictionary attack is good for system without password rules. Find only 20-30% password (with rules). Good setting system accept only >12 character password complex password. How many words have >12 character ?
Passwords is language dependence, other language use other character set.
oclhashcat is good for very fast brute-force ...
Good idea is implemented Markov Model of Natural Language for password generator

SHA1-HMAC and MD5-HMAC is very good for pen-testing. All corporation use VPN and without test group key not test wan security.


