[strongSwan] rightgroups is not working with IKEv1

Martin Willi martin at strongswan.org
Thu Jul 26 15:26:21 CEST 2012

> Currently missing is the connection fallback, though. So
> if your first connection does not comply, the setup fails without
> switching to a potentially matching connection. I'll try to get this
> implemented ASAP, but this requires some work.

I've just pushed another patch [1] that implements late peer config
switching if XAuth authentication does not fulfill the configured
constraints, such as group membership. With all these patches applied,
group information from RADIUS now can be used to select configurations
in IKEv1, too.



More information about the Users mailing list