[strongSwan] VPN connection to Remote Fortigate Client

Noel Kuntze noel.kuntze+strongswan-users-ml at thermi.consulting
Thu Apr 4 20:50:34 CEST 2019


Hi,

You configured "rightsourceip=10.10.10.0/24" but that's supposed to be a site-to-site connection. Use rightsubnet instead.
rightsourceip is for assigning and requesting virtual IPs. The best way for you would be to migrate to swanctl instead.
Its configuration format is a lot clearer.

Kind regards

Noel

Am 02.04.19 um 11:27 schrieb MOSES KARIUKI:
> Dear Tobias,
> 
> :) :)
> I read the message. But I can't really interpret what setting is needed to make it work. I have listed my current configuration. I am still finding my way with Linux networking and Strongswan.
> 
> Please assist. I will really appreciate and also offer assist others.
> 
> regards,
> Moses
> 
> 
> 
> On Tue, Apr 2, 2019 at 11:23 AM Tobias Brunner <tobias at strongswan.org <mailto:tobias at strongswan.org>> wrote:
> 
>     Hi Moses,
> 
>     > Apr  1 20:57:58 klick-001 charon: 11[IKE] expected a virtual IP
>     > request, sending FAILED_CP_REQUIRED
> 
>     I guess reading is hard.  Or is that message (that you explicitly marked
>     in your email) really that unclear?
> 
>     Regards,
>     Tobias
> 

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 833 bytes
Desc: OpenPGP digital signature
URL: <http://lists.strongswan.org/pipermail/users/attachments/20190404/b6cc092b/attachment.sig>


More information about the Users mailing list