[strongSwan] Fortinet vpn client compatibility with strongswan

Akshar Kanak akshar.kanak1 at gmail.com
Thu Feb 23 13:45:28 CET 2017

Dear team
      Is forticlient 5.4.2 (fortinet VPN client) compatible with Stringswan
server (U5.4.0/K3.10.0-123.4.4.el7.x86_64) ?
      Authentication mechanism used was only PSK only

      1)IKE phase 1 was successful
      2)MODE CFG messages was also sucessfull  and the client received an
ip address
      3)in QUICK mode client generates IDci == IP ADDRESS received in
MODECFG(01000000 0afe0014)
        ,IDcr=ID_IPV4_ADDR_SUBNET (04000000 00000000 00000000)  and sends
the request to server .client receives response  IDci=IP ADRESSS which was
sent in request  and IDcr=ID_IPV4_ADDR_SUBNET(04000000 0afe0000 ffffff00).
Fortinet clinet was printing "VPN    mismatched ID was returned."  and
sending ATTRIBUTES_NOT_SUPPORTED notify messsages to the server .

      Thanks and regards
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20170223/33cfe4c1/attachment.html>

More information about the Users mailing list