[strongSwan] openswan - strongswan

Noel Kuntze noel.kuntze+strongswan-users-ml at thermi.consulting
Mon Aug 7 22:19:42 CEST 2017


Hi Thomas

Please provide the information listed on the HelpRequests[1] page and additionally, due to this exact problem, the output of `ip xfrm state` on both hosts.

Kind regards

Noel

[1] https://wiki.strongswan.org/projects/strongswan/wiki/HelpRequests

On 07.08.2017 22:17, Thomas Will wrote:
> Hello
>
> I have a queston between old openswan an strongswan
>
> here is my strongswan site
>
> conn saul-worf
>      keyexchange=ikev1
>       left=87.128.yy.xx
>       rightsubnet=192.168.74.2/32
>       leftsubnet=172.16.20.42/32
>      keyexchange=ikev1
>       ike=aes256-sha1-modp2048
>         esp=aes256-sha1-modp2048
>         rightsubnet=192.168.200.0/21
>         right=87.190.ww.zz
>
> an here openswan
>
> conn bkp-ba-sym
>         left=87.190.ww.zz
>         leftsubnets=192.168.74.2/32
>         right=87.128.yy.xx
>         rightsubnet=172.16.20.42/32
>         authby=secret
>         ike=aes256-sha1-modp2048
>         esp=aes256-sha1;modp2048
>         pfs=yes
>         auto=start
>
> It worked well ... but wenn I restart openswan the vpn connection establish ... and the esp packets are going to strongswan ...
>
> but there they disapear ...  the only solution is to restart strongswan ...
>
> any hints?
>

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: OpenPGP digital signature
URL: <http://lists.strongswan.org/pipermail/users/attachments/20170807/4170d36f/attachment.sig>


More information about the Users mailing list