[strongSwan] ipsec pool file with certificates
Claude Tompers
claude.tompers at restena.lu
Thu Oct 28 15:52:38 CEST 2010
Hi,
I get no error, I just don't get the IP address I reserved. I'm supposed to get 192.168.122.190 (reserved) but I get 192.168.122.129 (the first one in the pool).
So I think that the id in the file, does not match the one sent by the client ?
regards,
Claude
On Thursday 28 October 2010 15:48:48 Martin Willi wrote:
> Hi,
>
> > ipsec pool --add ikev1 --addresses /path/to/ikev1.addr --timeout 48
>
> I see.
>
> > Should I write 192.168.122.190="X'302431133011060355040a130a7374726f6e677377616e310d300b0603550403130474657374'" into the file ?
>
> No, the address file parser does this conversion for you, no need for
> manual conversion.
>
> > It does not work for users that authenticate with a certificate
>
> What does not work? Do you get an error?
>
> Regards
> Martin
>
>
--
Claude Tompers
Ingénieur réseau et système
Fondation RESTENA - Réseau Téléinformatique de l'Education Nationale et de la Recherche
6, rue Richard Coudenhove-Kalergi
L-1359 Luxembourg
Tel: +352 424409 1
Fax: +352 422473
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 198 bytes
Desc: This is a digitally signed message part.
URL: <http://lists.strongswan.org/pipermail/users/attachments/20101028/1d09dbb3/attachment.pgp>
More information about the Users
mailing list