[strongSwan] Fortinet vpn client compatibility with strongswan

Tobias Brunner tobias at strongswan.org
Mon Feb 27 11:09:57 CET 2017


Hi Akshar,

> client receives response  IDci=IP ADRESSS
> which was sent in request  and IDcr=ID_IPV4_ADDR_SUBNET(04000000
> 0afe0000 ffffff00).
> Fortinet clinet was printing "VPN    mismatched ID
> was returned."

Looks like you configured leftsubnet=10.254.0.0/24 on the server but the
client expected to tunnel everything (i.e. leftsubnet=0.0.0.0/0).

Regards,
Tobias



More information about the Users mailing list