[strongSwan] Priority for overlapping subnets.

m.divya.mohan m.divya.mohan at zoho.com
Wed Apr 23 07:27:19 CEST 2014


Hi,

If I create two connections with overlapping subnets like:
conn con1
         leftsubnet=100.0.0.0/24
         rightsubnet=200.0.0.0/24
conn con2
         leftsubnet=100.0.0.1/32
         rightsubnet=200.0.0.1/32

When the kernel policies are created, how will the priority be assigned?
Is the priority going to be random, or is it based on the order in
which the connections are given in ipsec.conf file?
Is there a way by which user can control the priorities?

-- Divya





More information about the Users mailing list