[strongSwan] Different peer config for user group

Kris KRI2183876 at maricopa.edu
Sat Dec 1 22:31:33 CET 2012


Hi, all

I have 2 conn in config file, and I want to let group1 users to use
peer config 1, and group2 users to use peer config2.
I set "group2" in iOS's client as "Group Name", but it always select
group1 as peer config, any wrong with my config?

Thanks.

conn group1
        type=tunnel
        auto=start
        leftauth=psk
        rightauth=psk
        rightauth2=xauth-eap
        eap_identity=%identity
        modeconfig=push
        compress=no
        left=%defaultroute
        leftsourceip=10.8.6.1
        leftsubnet=0.0.0.0/0
        leftid=group1
        leftfirewall=yes
        right=%any
        rightsourceip=%pool
        rightsubnet=10.8.6.0/24

conn group2
        type=tunnel
        auto=start
        leftauth=psk
        rightauth=psk
        rightauth2=xauth-eap
        eap_identity=%identity
        modeconfig=push
        compress=no
        left=%defaultroute
        leftsourceip=10.7.6.1
        leftsubnet=0.0.0.0/0
        leftid=group2
        leftfirewall=yes
        right=%any
        rightsourceip=%pool2
        rightsubnet=10.7.6.0/24

--
Kris




More information about the Users mailing list