[strongSwan] Encrypting connection between two public IPv6 prefixes

Marek Szuba scriptkiddie at wp.pl
Tue Jun 6 22:07:38 CEST 2017


On 2017-06-06 19:37, Noel Kuntze wrote:

> Your ipsec.conf is wrong and crap.
Umm, you might want to compare my ipsec.conf to

https://www.strongswan.org/testing/testresults/ipv6/net2net-ikev2/

which is is what I used as reference having read in "Introduction to
strongSwan", right at the beginning of the "Site-to-Site Configuration"
section, "For site-to-site connections you may refer to any of the
net2net scenarios (and many others) of our test suite" and following
that link to the IPv6 section.

> Take a look at the example configurations[1] for site-to-site tunnels
> and use them.
Okay, that indeed does not look at all like my current config. Will see
what I can get out of that one, thanks.

> Also kindly read the FAQ[2]
Ah, I see - so it that "double input" thing *is* a capture artefact.

> and the HelpRequests[3] page.
I've read that one. One of the first paragraphs of that page directs its
readers to "Introduction to strongSwan", which is what I started with
earlier.

Regards,
-- 
MS


More information about the Users mailing list