[strongSwan] Every network except the other side?

Andreas Steffen andreas.steffen at strongswan.org
Thu Aug 25 06:16:49 CEST 2011


you can do this with strongswan-4.5.3 by defining a pass shunt policy
for the local net as shown in the following example scenario:




On 08/25/2011 02:34 AM, Christ Schlacta wrote:
> is it possible to configure Strongswan + IKEv2 using charon as per usual 
> in roadwarrior mode to specify that the networks to be accessible across 
> the IKEv2 tunnel are to be ALL networks except the right hand subnet as 
> it is known to the right side at the point in time of connection?  I 
> connect from numerous networks, and would like to be able to browse the 
> local network with all traffic beyond the current subnet being sent 
> along the VPN.

Andreas Steffen                         andreas.steffen at strongswan.org
strongSwan - the Linux VPN Solution!                www.strongswan.org
Institute for Internet Technologies and Applications
University of Applied Sciences Rapperswil
CH-8640 Rapperswil (Switzerland)

More information about the Users mailing list