[strongSwan] Debugging a simple road warrior setup

Johannes Kastl mail at ojkastl.de
Tue May 17 21:05:12 CEST 2016


Hi all,

I tried to setup a strongswan server running on CentOS7, with an
android device and a machine running OSX 10.10 connecting.
I followed this tutorial:
https://raymii.org/s/tutorials/IPSEC_vpn_with_CentOS_7.html

I set up a log according to the instructions on this page:
https://wiki.strongswan.org/projects/strongswan/wiki/LoggerConfiguration

But neither my /var/log/charon.log nor /var/log/messages contain
anything that I would recognize as an error.

The logs of the strongswan android app contain this line:
... giving up after 3 retransmits
... peer not responding, trying again (2/0)

Other than that, I can't find anything that looks like an error.

Can someone point me to some RT that I can FM, especially which errors
I could be looking for?

I disabled the firewall on the server.

I setup a strongswan PKI according to the tutorial, this seems to work
out ok, the android logs contain this line:
> authentication of 'C=NL, O=Example Company, CN=john at example.org' (myself) with RSA_EMSA_PKCS1_SHA256 successful

I transferred the p12 file to the android device and imported it into
the app. I tried connecting to the IP or the hostname of the server.
Neither worked.

Thanks in advance,

Johannes

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 244 bytes
Desc: OpenPGP digital signature
URL: <http://lists.strongswan.org/pipermail/users/attachments/20160517/282a4cc1/attachment.sig>


More information about the Users mailing list