[strongSwan] Galaxy S9 native IKEv2 client tears down connection

Giorgos Mavrikas gmavrikas at gmail.com
Thu Dec 6 10:56:05 CET 2018


Hi Tobias,

That was it, the client was not expecting a certificate from the server
side!
Thanks for all the help.

BR,
Giorgos

On Thu, Dec 6, 2018 at 10:15 AM Tobias Brunner <tobias at strongswan.org>
wrote:

> Hi Giorgos,
>
> > I am trying to connect my galaxy s9+ via the native IKEv2 client to a
> > strong swan server of mine via IKEv2-PSK.
>
> That's not exactly what you are doing.  From the server's perspective
> you are using a PSK only to authenticate the client (rightauth), the
> server is authenticated with a certificate (leftauth, defaults to pubkey
> and you also load a certificate).  Maybe the client expects the server
> to authenticate with a PSK too, or it doesn't trust the server cert, or
> the identity doesn't match.  Anyway, without client log it's difficult
> to say what its reason for returning an AUTH_FAILED notify is.
>
> Regards,
> Tobias
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20181206/98d9ed06/attachment-0001.html>


More information about the Users mailing list