[strongSwan] Strongswan to Sonicwall 5500, INVALID_SYNTAX error establishing CHILD_SA

Tobias Brunner tobias at strongswan.org
Mon Apr 14 18:03:52 CEST 2014


Hi Harvinder,

>         leftsourceip=10.0.33.17

This is probably not what you want (or what the Sonicwall expects).  If
you configure an IP like that charon will send it in a configuration
payload to the gateway to request it as virtual IP [1].  If you simply
want to use that IP inside the tunnel, just install it manually on one
of the interfaces (even lo).

Regards,
Tobias

[1] http://wiki.strongswan.org/projects/strongswan/wiki/VirtualIp


More information about the Users mailing list