[strongSwan] Changing IKE port

Eric Boudrand eric.boudrand at thegreenbow.com
Wed Jul 13 17:22:59 CEST 2016


Hi,

I am trying to establish IKEv1 tunnel with non standard IKE port. I have 
set charon.port=6701 in /etc/strongswan.d/charon.conf.

In the logs, i can see the incoming packet :
Jul 13 16:43:41 ikev2 charon: 03[NET] received packet => 184 bytes @
0xafb379f0
[ I removed the intermediate logs ]
Jul 13 16:43:41 ikev2 charon: 03[NET] received packet: from
192.168.0.200[6701] to 192.168.0.22[6701]
Jul 13 16:43:41 ikev2 charon: 03[NET] waiting for data on sockets
But, there is no more action.

If I remove "charon.port" parameter and set 500 as IKE port in the 
remote VPN client configuration, the tunnel is established. Is there 
another parameter to add ? I did not use leftikeport.

Regards.
-- 
Eric Boudrand


More information about the Users mailing list