[strongSwan] Manual SA using strongswan

Noel Kuntze noel.kuntze+strongswan-users-ml at thermi.consulting
Fri Jan 19 15:07:09 CET 2018


Hi,

strongSwan is an IKE daemon. Its purpose is to negotiate dynamic SAs. As soon as you have an IKE daemon, you do not need any static SAs anymore.
It therefore does not support static SAs. If you want that, you need to use your system's tools (e.g. iproute2 (ip xfrm ...)).

Kind regards

Noel

On 19.01.2018 12:35, manimuthu m a wrote:
>
>
> On Fri, Jan 19, 2018 at 4:38 PM manimuthu m a <manilon.muthu at gmail.com <mailto:manilon.muthu at gmail.com>> wrote:
>
>     HI All,
>
>     My sincere apology for my ignorance.
>
>     I just started to work on strongswan and ipsec in linux. My need is very simple for now, I tried googling it for more than a week. Most probably I didn't use the right term. 
>
>     Can we establish manual SA using strongswan? if so can someone help me with an example?
>
>     Once again sorry for my ignorance.
>
>     Regards,
>     Manimuthu.
>

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: OpenPGP digital signature
URL: <http://lists.strongswan.org/pipermail/users/attachments/20180119/f726ab7d/attachment.sig>


More information about the Users mailing list