[strongSwan] Dynamic IP to VPS site-to-site

Eric Zhang debiansid at gmail.com
Thu Dec 25 07:06:12 CET 2014


Yes,my local side is ADSL which has dynamic ip,can I setup certs to authenticate?

Sent from Mobile


> On 2014年12月24日, at 22:45, Zesen Qian <strongswan-users at riaqn.com> wrote:
> 
> Noel Kuntze <noel at familie-kuntze.de> writes:
> 
>> Hello Eric,
>> 
>> See [1] for authentication using X509 certificates and site-to-site tunnels.
>> 
>> [1] http://www.strongswan.org/uml/testresults/ikev2/net2net-cert/
>> 
>> Mit freundlichen Grüßen/Regards,
>> Noel Kuntze
>> 
>> GPG Key ID: 0x63EC6658
>> Fingerprint: 23CA BB60 2146 05E7 7278 6592 3839 298F 63EC 6658
>> 
>>> Am 24.12.2014 um 00:42 schrieb Eric Zhang:
>>> How can I use  RSA authentication with X.509 certificates to setup ip tunnel between my PPPoE to VPS (which has fix IP)?
>>> 
>>> Thanks
>>> 
>>> Eric
>> 
>> 
>> _______________________________________________
>> Users mailing list
>> Users at lists.strongswan.org
>> https://lists.strongswan.org/mailman/listinfo/users
> Hello Noel,
>      I guess the question Eric want to ask is mainly about site-to-site
>      with "dynamic IP" on one side, while the other side has fixed IP.
>      I 'm also eager to know since it's my situation too. :) My IPv6
>      address is dynamic.
>      If I ommit the left= paramter, which defaults to %any, it
>      sometimes(and randomly) would use ::1 on local, which surely
>      won't success. Other times it would use the global address which
>      works just find.
> 
> -- 
> Zesen Qian (钱泽森)
> Undergraduate
> School of Software
> Shanghai Jiao Tong University


More information about the Users mailing list