[strongSwan] Force UDP Encapsulation in 5.0.4?

Andreas Steffen andreas.steffen at strongswan.org
Mon Jul 8 05:58:33 CEST 2013


Hi Dan,

in the connection definition of ipsec.conf add the parameter

  forceencaps=yes

Regards

Andreas

On 07/07/2013 05:04 AM, Dan Cook wrote:
> I am working in a virtual environment that does not allow ESP traffic.
>  Is there a way to force strongswan 5.0.4 to use UDP encapsulation of
> the ESP traffic?   The machines are connected over a non-natted internal
> network.
> 
> If this is not possible, can you please advise where in the code I
> should look to "force" this connection to UDP encapsulation.
> 
> Thanks, 
> Dan Cook

======================================================================
Andreas Steffen                         andreas.steffen at strongswan.org
strongSwan - the Linux VPN Solution!                www.strongswan.org
Institute for Internet Technologies and Applications
University of Applied Sciences Rapperswil
CH-8640 Rapperswil (Switzerland)
===========================================================[ITA-HSR]==

-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4468 bytes
Desc: S/MIME Cryptographic Signature
URL: <http://lists.strongswan.org/pipermail/users/attachments/20130708/5e1a247b/attachment.bin>


More information about the Users mailing list