[strongSwan] Dynamic IP to VPS site-to-site

Zesen Qian strongswan-users at riaqn.com
Wed Dec 24 15:45:02 CET 2014


Noel Kuntze <noel at familie-kuntze.de> writes:

> Hello Eric,
>
> See [1] for authentication using X509 certificates and site-to-site tunnels.
>
> [1] http://www.strongswan.org/uml/testresults/ikev2/net2net-cert/
>
> Mit freundlichen Grüßen/Regards,
> Noel Kuntze
>
> GPG Key ID: 0x63EC6658
> Fingerprint: 23CA BB60 2146 05E7 7278 6592 3839 298F 63EC 6658
>
> Am 24.12.2014 um 00:42 schrieb Eric Zhang:
>> How can I use  RSA authentication with X.509 certificates to setup ip tunnel between my PPPoE to VPS (which has fix IP)?
>>
>> Thanks
>>
>> Eric
>>
>
>
> _______________________________________________
> Users mailing list
> Users at lists.strongswan.org
> https://lists.strongswan.org/mailman/listinfo/users
Hello Noel,
      I guess the question Eric want to ask is mainly about site-to-site
      with "dynamic IP" on one side, while the other side has fixed IP.
      I 'm also eager to know since it's my situation too. :) My IPv6
      address is dynamic.
      If I ommit the left= paramter, which defaults to %any, it
      sometimes(and randomly) would use ::1 on local, which surely
      won't success. Other times it would use the global address which
      works just find.

-- 
Zesen Qian (钱泽森)
Undergraduate
School of Software
Shanghai Jiao Tong University


More information about the Users mailing list