[strongSwan] VPN connection to Remote Fortigate Client

Noel Kuntze noel.kuntze+strongswan-users-ml at thermi.consulting
Thu Apr 4 20:50:34 CEST 2019


You configured "rightsourceip=" but that's supposed to be a site-to-site connection. Use rightsubnet instead.
rightsourceip is for assigning and requesting virtual IPs. The best way for you would be to migrate to swanctl instead.
Its configuration format is a lot clearer.

Kind regards


Am 02.04.19 um 11:27 schrieb MOSES KARIUKI:
> Dear Tobias,
> :) :)
> I read the message. But I can't really interpret what setting is needed to make it work. I have listed my current configuration. I am still finding my way with Linux networking and Strongswan.
> Please assist. I will really appreciate and also offer assist others.
> regards,
> Moses
> On Tue, Apr 2, 2019 at 11:23 AM Tobias Brunner <tobias at strongswan.org <mailto:tobias at strongswan.org>> wrote:
>     Hi Moses,
>     > Apr  1 20:57:58 klick-001 charon: 11[IKE] expected a virtual IP
>     > request, sending FAILED_CP_REQUIRED
>     I guess reading is hard.  Or is that message (that you explicitly marked
>     in your email) really that unclear?
>     Regards,
>     Tobias

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: OpenPGP digital signature
URL: <http://lists.strongswan.org/pipermail/users/attachments/20190404/b6cc092b/attachment.sig>

More information about the Users mailing list