[strongSwan] Established but cannot ping with IKEv1 aggressive PSK+XAUTH

Andreas Tscharner andy at vis.ethz.ch
Fri Aug 4 09:40:19 CEST 2017


On 03.08.2017 18:25, David Sautter wrote:
> Hello all,
>
> I'm trying to connect to my companies network. They have a Juniper
> SRX-100 as VPN Gateway, which is working fine as tested with other VPN
> clients. I'm using strongswan 5.5.3.
>
> I'm using IKEv1 aggressive mode, PSK+XAUTH. The connection is
> established, but i cannot ping any member of the company network.

What Kernel version are you using? I have had a similar problem and the 
culprit was Kernel 4.11. The lower 4.11.x versions are all affected, for 
me 4.11.11 worked again.

Best regards
	Andreas
-- 
       ("`-''-/").___..--''"`-._
        `o_ o  )   `-.  (     ).`-.__.`)
        (_Y_.)'  ._   )  `._ `. ``-..-'
      _..`--'_..-_/  /--'_.' .'
     (il).-''  (li).'  ((!.-'

Andreas Tscharner   andy at vis.ethz.ch   ICQ-No. 14356454


More information about the Users mailing list