[strongSwan] Fortinet vpn client compatibility with strongswan

Tobias Brunner tobias at strongswan.org
Mon Feb 27 11:09:57 CET 2017

Hi Akshar,

> client receives response  IDci=IP ADRESSS
> which was sent in request  and IDcr=ID_IPV4_ADDR_SUBNET(04000000
> 0afe0000 ffffff00).
> Fortinet clinet was printing "VPN    mismatched ID
> was returned."

Looks like you configured leftsubnet= on the server but the
client expected to tunnel everything (i.e. leftsubnet=


More information about the Users mailing list