[strongSwan] traffic selector

Stefano Marini smarini at tiscali.it
Tue Apr 1 10:55:38 CEST 2014


Hi,
I have the followin problem, I'm trying to bring up a vpn ipsec with rsa 
signature,
the endpoint is a CISCO VPN concentrator.

The version 4.5.xx donloaded by debian repository works more or less 
fine but some times the vpn fall.
I decide to pass to Linux strongSwan U5.1.1/K3.2.0-4-amd64

I modify old configuration accordin with new conf,
but during the ike exchange I see  something strange that in old version 
I never see.

charon: 10[CFG]  proposing traffic selectors for us:
charon: 10[CFG]  10.210.242.112/28
charon: 10[CFG] proposing traffic selectors for other:
charon: 10[CFG]  10.70.78.0/23
charon: 10[CFG] changing proposed traffic selectors for other:
charon: 10[CFG]  0.0.0.0/0

After this I receive an error

  parsed INFORMATIONAL_V1 request 1506977200 [ HASH N(INVAL_ID) ]

My question is
how I can avoid the below line?
charon: 10[CFG] changing proposed traffic selectors for other:
charon: 10[CFG]  0.0.0.0/0

regards
Stefano



---
Questa e-mail è priva di virus e malware perché è attiva la protezione avast! Antivirus.
http://www.avast.com



More information about the Users mailing list