[strongSwan] How to allow several connections for each user simultaneously ?

Dongsheng Song dongsheng.song at gmail.com
Tue Jan 27 10:56:02 CET 2015


On Tue, Jan 27, 2015 at 2:16 AM, Noel Kuntze <noel at familie-kuntze.de> wrote:
> Hello Dongsheng,
>
> That is functionality that does not pertain IPsec.
> You can of course script that functionality in a custom updown script
> and call that script with leftupdown in a conn section.
>

Thanks. But in the public IPsec gateway, I can only use
PLUTO_PEER/PLUTO_PEER_CLIENT and PLUTO_PEER_ID to do DNS update. Only
the IPsec client can use FQDN to do DNS update, right ?

>> e.g., after StrongSwan assigning virtual IP 10.1.1.1 to the client
>> (machine name test-01), then StrongSwan do (or trigger) DNS update,
>> insert or update A record that points test-01.example.com to the IP
>> address 10.1.1.1.
>>


More information about the Users mailing list