[strongSwan] Galaxy S9 native IKEv2 client tears down connection
Giorgos Mavrikas
gmavrikas at gmail.com
Thu Dec 6 10:56:05 CET 2018
Hi Tobias,
That was it, the client was not expecting a certificate from the server
side!
Thanks for all the help.
BR,
Giorgos
On Thu, Dec 6, 2018 at 10:15 AM Tobias Brunner <tobias at strongswan.org>
wrote:
> Hi Giorgos,
>
> > I am trying to connect my galaxy s9+ via the native IKEv2 client to a
> > strong swan server of mine via IKEv2-PSK.
>
> That's not exactly what you are doing. From the server's perspective
> you are using a PSK only to authenticate the client (rightauth), the
> server is authenticated with a certificate (leftauth, defaults to pubkey
> and you also load a certificate). Maybe the client expects the server
> to authenticate with a PSK too, or it doesn't trust the server cert, or
> the identity doesn't match. Anyway, without client log it's difficult
> to say what its reason for returning an AUTH_FAILED notify is.
>
> Regards,
> Tobias
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20181206/98d9ed06/attachment-0001.html>
More information about the Users
mailing list