[strongSwan] strongSwan configuration on Ubuntu(Karmic).-- No /etc/ipsec.conf , ipsec.secrets present.

pankaj gupta beckman16 at gmail.com
Tue Apr 13 16:06:38 CEST 2010


I have all configuration files in place now.
I tried to run sample test at
http://www.strongswan.org/uml/testresults43/ikev1/rw-cert/

my network setup is like:

-------------------------------
|  PC1(FC9)              |
|  eth0:10.1.0.2/24     |
|  IPsec disabled here|
--------------------------------
              ||
              ||
-------------------------------------------------
|  PC2(Ubuntu Karmic)                |
|  eth1:10.1.0.1/24                      |
|                                                |
|  eth0:192.168.1.24/24                |
|                                                |
|  strongSwan 4.3.6 installed here |
--------------------------------------------------
               ||
               ||
-------------------------------------------------
|  PC3(Ubuntu Karmic)                |
|  eth0:192.168.1.21/24                |
|                                                |
|  strongSwan 4.3.6 installed here |
--------------------------------------------------

I configured PC2 and PC3 as specified in
http://www.strongswan.org/uml/testresults43/ikev1/rw-cert/ .

>From PC3(IP:192.168.1.21), I try to ping PC1(IP:10.1.0.2) but to no avail.

According to the sample test at the above URL, I should be able to send ping
PC1 from PC3.

Is there something additional to be done with iptables or route entries?

I tried adding route entries and tcpdump on all machines...but its just not
working. :(

Is there a pre-configured virtual appliance available on some website or
with someone in this list?

I am really depressed with strongSwan not working though I am trying since
five days.

Really appreciate any help.

Regards
Pankaj Gupta


2010/4/13 pankaj gupta <beckman16 at gmail.com>

> Thanks Aaron, I build strongswan from source..and files appeared at
> expected locations.
> Thanks a ton for you response.
>
> Regards
> Pankaj Gupta
>
>
> 2010/4/12 Aaron Zhang <azhang at sonicwall.com>
>
> The config file may locate at  /usr/local/etc. It depend on how you edit
>> the configure file when you build strongswan by source code.
>>
>>
>>
>> --Aaron
>>
>>
>>
>> *From:* users-bounces+bzhang=sonicwall.com at lists.strongswan.org [mailto:
>> users-bounces+bzhang <users-bounces%2Bbzhang>=sonicwall.com@
>> lists.strongswan.org] *On Behalf Of *pankaj gupta
>> *Sent:* 2010年4月12日 17:41
>> *To:* users at lists.strongswan.org
>> *Subject:* [strongSwan] strongSwan configuration on Ubuntu(Karmic).-- No
>> /etc/ipsec.conf , ipsec.secrets present.
>>
>>
>>
>> Hi Community,
>>
>> I recently plunged into IPsec world and am overwhelmed by the richness of
>> IPsec particularly strongSwan.
>>
>>
>>
>> I am trying to configure strongSwan on Ubuntu(Karmic).
>>
>> I installed strongSwan packages(strongSwan, its Network Manager module and
>> few other packages starting with strongSwan) from synaptic package manager.
>>
>> But I could not find ipsec.conf, ipsec.secrets files on the file system.
>>
>>
>>
>> I had installed strongSwan on FC9 also, but that was through source
>> building and all configuration files were there in case of FC9.
>>
>>
>>
>> I am confused ..do I need to create these files by myself on Ubuntu?
>>
>> Or I need to build strongSwan through source(if it helps)?
>>
>> Or there is some problem if these files are not there by default?
>>
>>
>>
>> I have invested enough time searching and configuring things of different
>> OS, please help me if anyone have some idea.
>>
>>
>>
>> Any help would be appreciated.
>>
>>
>>
>> Regards
>> Pankaj Gupta
>>
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20100413/b0c26492/attachment.html>


More information about the Users mailing list