[strongSwan] Config doesnt work on Windows 10 and Android

Sebastian Pfohl bthordy at outlook.com
Fri Oct 5 21:59:39 CEST 2018


I would like to connect to the VPN server with the native Windows 10 Client, but i cant connect. I have followed a tutorial at https://www.zeitgeist.se/2013/11/22/strongswan-howto-create-your-own-vpn/ but the connection isnt succesfully. I struggle to import the certificates, because the option to import a machine certificate is greyed out in Windows 10 Home. However, i can select manually a user certificate. I dont know if that is ok. I couldnt find any information about Windows 10 Home Edition. Is there any better instruction available, how to make a connection from Windows 10 home to a Strongswan VPN? Here is my current config:

config setup
	charondebug="ike 2, knl 1, cfg 2, dmn 2, net 2"
	
conn %default
	keyexchange=ikev2
	ike=aes256-sha1-modp1024,aes256-sha384-ecp384!
	esp=aes256-sha1,aes256-sha384-ecp384!
	dpdaction=clear
	dpddelay=300s
	rekey=no
	
	left=%any
	leftsubnet=0.0.0.0/0
	leftcert=vpnHostCert.pem
	right=%any
	rightdns=8.8.8.8,8.8.4.4
	rightsourceip=%dhcp

conn IPSec-IKEv2
	keyexchange=ikev2
	auto=add

conn IPSec-IKEv2-EAP
	also="IPSec-IKEv2"
	rightauth=eap-mschapv2
	rightsendcert=never
	eap_identity=%any

Additionally, i use a Samsung Galaxy 7. There i can create a VPN connection with "IPSec IKEv2 RSA" with the build-in Client. I cant connect from here to. The connection is refused. I tought the above configuration should work the VPN type in Samsung Galaxy. Can someone please help to make a proper config please?


More information about the Users mailing list