<html><head><meta http-equiv="Content-Type" content="text/html; charset=us-ascii"></head><body style="word-wrap: break-word; -webkit-nbsp-mode: space; line-break: after-white-space;" class=""><div class="">Hi @all,<div class=""><br class=""></div><div class=""><p class="" style="caret-color: rgb(54, 0, 12); color: rgb(54, 0, 12); font-family: Verdana, sans-serif; font-size: 10.800000190734863px;">I would like to move from my very old Shrew Soft iked to Strongswan. Can somebody give me some help to convert the config ?</p><p class="" style="caret-color: rgb(54, 0, 12); color: rgb(54, 0, 12); font-family: Verdana, sans-serif; font-size: 10.800000190734863px;">Here is my Shrew Soft iced Config:</p><p class="" style="caret-color: rgb(54, 0, 12); color: rgb(54, 0, 12); font-family: Verdana, sans-serif; font-size: 10.800000190734863px;">n:version:4<br class="">n:network-ike-port:500<br class="">n:network-mtu-size:1380<br class="">n:client-addr-auto:1<br class="">n:network-natt-port:4500<br class="">n:network-natt-rate:15<br class="">n:network-frag-size:540<br class="">n:network-dpd-enable:1<br class="">n:client-banner-enable:1<br class="">n:network-notify-enable:1<br class="">n:client-wins-used:0<br class="">n:client-wins-auto:1<br class="">n:client-dns-used:1<br class="">n:client-dns-auto:0<br class="">n:client-splitdns-used:0<br class="">n:client-splitdns-auto:0<br class="">n:phase1-dhgroup:2<br class="">n:phase1-life-secs:28800<br class="">n:phase1-life-kbytes:0<br class="">n:vendor-chkpt-enable:0<br class="">n:phase2-life-secs:28800<br class="">n:phase2-life-kbytes:0<br class="">n:policy-nailed:1<br class="">n:policy-list-auto:0<br class="">b:auth-mutual-psk:PSK<br class="">n:phase2-pfsgroup:2<br class="">s:client-saved-username:MYUSER<br class="">n:client-dns-suffix-auto:0<br class="">n:phase1-keylen:0<br class="">n:phase2-keylen:0<br class="">s:network-host:VPN-SERVER<br class="">s:client-auto-mode:pull<br class="">s:client-iface:virtual<br class="">s:network-natt-mode:enable<br class="">s:network-frag-mode:enable<br class="">s:client-dns-addr:DNS-SERVER1,DNS-SERVER2<br class="">s:client-dns-suffix:DOMAIN.local<br class="">s:auth-method:mutual-psk-xauth<br class="">s:ident-client-type:ufqdn<br class="">s:ident-client-data:MYUSER@DOMAIN<br class="">s:ident-server-type:address<br class="">s:ident-server-data:VPN-SERVER<br class="">s:phase1-exchange:aggressive<br class="">s:phase1-cipher:3des<br class="">s:phase1-hash:sha1<br class="">s:phase2-transform:esp-3des<br class="">s:phase2-hmac:sha1<br class="">s:ipcomp-transform:disabled<br class="">s:policy-level:require<br class="">s:policy-list-include:192.168.0.0 / 255.255.0.0</p></div></div><br class=""></body></html>