[strongSwan] ipsec pool file with certificates

Claude Tompers claude.tompers at restena.lu
Thu Oct 28 15:52:38 CEST 2010


Hi,

I get no error, I just don't get the IP address I reserved. I'm supposed to get 192.168.122.190 (reserved) but I get 192.168.122.129 (the first one in the pool).

So I think that the id in the file, does not match the one sent by the client ?

regards,
Claude


On Thursday 28 October 2010 15:48:48 Martin Willi wrote:
> Hi,
> 
> > ipsec pool --add ikev1 --addresses /path/to/ikev1.addr --timeout 48
> 
> I see.
> 
> > Should I write 192.168.122.190="X'302431133011060355040a130a7374726f6e677377616e310d300b0603550403130474657374'" into the file ?
> 
> No, the address file parser does this conversion for you, no need for
> manual conversion.
> 
> > It does not work for users that authenticate with a certificate
> 
> What does not work? Do you get an error?
> 
> Regards
> Martin
> 
> 

-- 
Claude Tompers
Ingénieur réseau et système
Fondation RESTENA - Réseau Téléinformatique de l'Education Nationale et de la Recherche
6, rue Richard Coudenhove-Kalergi
L-1359 Luxembourg

Tel: +352 424409 1
Fax: +352 422473
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 198 bytes
Desc: This is a digitally signed message part.
URL: <http://lists.strongswan.org/pipermail/users/attachments/20101028/1d09dbb3/attachment.pgp>


More information about the Users mailing list