[strongSwan] [StrongSwan] IKE_AUTH packet not reaching the VPN gateway

Ccf Cloud ccfcloud at gmail.com
Mon Jan 6 13:02:11 CET 2014


Hi Martin/Others,

Any update on this issue? I checked my router and that seems to be sending
packets forward properly but the other side still do not receive any thing.

The problem arises only when my IKE_AUTH packet size is > MTU size.

Even the firewall logs do not show any drops for these packets.


--Regards
   Sam



On Fri, Jan 3, 2014 at 3:27 PM, Ccf Cloud <ccfcloud at gmail.com> wrote:

> Hi Martin,
>
>
> On Fri, Jan 3, 2014 at 3:02 PM, Martin Willi <martin at strongswan.org>wrote:
>
>> Hi Sam,
>>
>> > The tcp dump logs from my Android device show that the IKE_AUTH
>> > messages are being sent from the Android device.
>>
>> Does that IKE_AUTH get fragmented? Any IP fragment restrictions on that
>> path?
>>
>>
> Yes it does gets fragmented. I've a Netgear Wi-Fi router which I use to
> connect my Android device. On the server side I've a linux box running
> ubuntu12.04.
>
> What restrictions are you talking about?
>
>
>> Regards
>> Martin
>>
>>
>
> --Regards
>      Sam
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20140106/916a07e5/attachment.html>


More information about the Users mailing list