[strongSwan] IPSEC-SECRETS FILE file parsing issue results in "calculated HASH does not match HASH payload" and HASH N(AUTH_FAILED)

Tobias Brunner tobias at strongswan.org
Tue Nov 17 15:44:21 CET 2015


Hi Rajiv,

> 2.2.2.21 GroupName1 : PSK "config123abc"

For IKEv1 any PSK secret that lists matching IP addresses, in particular
local IP addresses, will be preferred over other secrets.  Configuring
the local IP address as owner of a secret makes rarely sense anyway,
unless you use different secrets when communicating with the same remote
host over different local IP addresses.

Regards,
Tobias



More information about the Users mailing list