[strongSwan] how to config multiple specific virtual ips per road warrior on swanctl.conf?

Noel Kuntze noel at familie-kuntze.de
Wed Jan 13 11:03:27 CET 2016


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Hello,

> [...] so I have to change from ipsec.conf to swanctl.conf because of charon-systemd. the following is my ipsec.conf on strongswan gateway:
That's wrong. You can just use the charon.service unit, I think. Or write your own unit that calls `ipsec start` with type=forking.

> how to translate it to swanctl.conf?
Define one pool, one ike configuration and child_sa configuration for each roadwarrior.

- -- 

Mit freundlichen Grüßen/Kind Regards,
Noel Kuntze

GPG Key ID: 0x63EC6658
Fingerprint: 23CA BB60 2146 05E7 7278 6592 3839 298F 63EC 6658

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
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=eM5P
-----END PGP SIGNATURE-----



More information about the Users mailing list