[strongSwan] strongswan on centos 6

christopher kamutumwa chriskamutumwa at gmail.com
Sat Feb 13 15:17:49 CET 2016


ive installed strong swan and tunnel has been established but subnet
child(S) not communicating via ping i type

ip -s xfrm policy it shows empty what could be the issue
chris

 conn %default
        ikelifetime=28800s
        keylife=200s
        rekeymargin=300
        keyingtries=1
        keyexchange=ikev1
        ike=aes128-sha1-modp1024-diffie-hellman group 2

        esp=3des-sha1
        ike=3des-sha1-modp1024
        mobike=yes
        leftikeport=4500
        rightikeport=4500
        authby=secret
 conn MTN
  type=tunnel
    left=185.3.95.94
    # left=%defaultroute
    # leftcert=client.cert
    #     authby=secret
    leftsubnet=192.168.200.172/17
    leftsourceip=%config
     leftfirewall=yes
     right=41.223.117.190
     #rightid=41.223.117.190
    rightsubnet=172.25.48.36/32,172.25.48.43/32
     #      rightsubnet=172.25.48.36/16
     #  rightsubnet=172.25.48.36
   auto=start
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20160213/3c317a4b/attachment.html>


More information about the Users mailing list