[strongSwan] Cant ping accoss tunnnel

Mike Lander mechiman at gmail.com
Mon Oct 26 20:11:00 CET 2015


site A-----Linux strongSwan U4.3.4/K2.6.31.5-0.1-desktop

config setup
       #strictcrlpolicy=no
charonstart=no
plutostderrlog = /var/log/pluto.log
#plutodebug=control
#syslog=auth.debug
#nhelpers=0
#plutowait=yes
#syslog=auth.info

conn %default
# keyingtries default to %forever64.42.53.204
#keyingtries=3
# Sig keys (default: %dnsondemand)
#leftrsasigkey=%cert
#rightrsasigkey=%cert
# Lifetimes, defaults are 1h/8hrs
#ikelifetime=20m
#keylife=1h
#rekeymargin=8m
authby=secret
ike=aes256-sha1-modp1024!
esp=aes256-sha1!
keyingtries=%forever
ikelifetime=86400
        keylife=28800
conn Lanline1
        also=Lanline
leftsubnet=10.19.227.0/24
rightsubnet=10.194.79.0/24
auto=start
conn Lanline
left=50.78.47.90
right=75.149.172.88
        keyexchange=ikev1
type=tunnel











SiteB ------- strongSwan U5.2.2/K4.2.3-1-default

conn %default
        authby=secret
        keyingtries=1
keyexchange=ikev1
ike=aes128-sha256-modp2048!
esp=aes128-sha256!
conn Olympia1
also=Olympia
        leftsubnet=10.194.79.0/24
        rightsubnet=10.19.227.0/24
        auto=start
conn Olympia
        left=75.149.172.88
keyexchange=ikev1
        right=50.78.47.90
        type=tunnel
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20151026/4e67ccbd/attachment.html>


More information about the Users mailing list