<html>
<head>
<meta http-equiv="content-type" content="text/html; charset=utf-8">
</head>
<body link="#0B6CDA" vlink="#551A8B" text="#000000" bgcolor="#ffffff"
alink="#EE0000">
<font size="-1"><tt>Hi,<br>
<br>
I try connect client :<br>
strongSwan 5.6.0, Android 8.0.0 - OPR4.170623.009/2017-10-05,
Nexus 5X - google/bullhead/LGE, Linux 3.10.73-ga51b1600b7f8,
aarch64<br>
<br>
server:<br>
ipsec version Linux strongSwan U5.6.0/K4.13.2<br>
<br>
connection type<br>
<br>
conn vpn-ikev2<br>
keyexchange=ikev2<br>
type=transport<br>
left=13.41.7.54<br>
leftcert=proxu.s.cert<br>
<a class="moz-txt-link-abbreviated" href="mailto:leftid=@proxy.domain.com">leftid=@proxy.domain.com</a><br>
right=%any<br>
rightca=@#0b:c3:d4:33:....<br>
authby=rsasig<br>
keyingtries=%forever<br>
leftsubnet=0.0.0.0/0<br>
rightdns=192.168.0.2<br>
rightrsasigkey=%cert<br>
<br>
conn vpn-ikev2-android<br>
<------>also="vpn-ikev2"<br>
rightid="C=PL, ST=Malopolska, O=Test, OU=Sec man,
<a class="moz-txt-link-abbreviated" href="mailto:CN=androidclient@domain.com">CN=androidclient@domain.com</a>, <a class="moz-txt-link-abbreviated" href="mailto:E=android@domain.com">E=android@domain.com</a>"<br>
auto=add<br>
rightsourceip=192.168.0.100/32<br>
<br>
<br>
Windows clients can connect well, but when android trying i have
error in logs<br>
<br>
</tt><tt>charon: 10[IKE] DH group CURVE_25519 inacceptable,
requesting CURVE_25519<br>
<br>
what that mean curve_25519 != curve_25519??<br>
<br>
</tt></font><br>
<pre wrap="">Every helpful hint would be highly appreciated.
Rafał
</pre>
<font size="-1"><tt><br>
<br>
<br>
<br>
</tt></font>
</body>
</html>