[strongSwan] VPN connection to Remote Fortigate Client

MOSES KARIUKI kariukims at gmail.com
Mon Apr 8 14:09:20 CEST 2019


Thanks a lot Noel. The connection is up and stable. Very helpful.
One more thing, the remote client is able to ping my private IP, but i am
unable to ping his private IP address. I have checked and my routes seem
OK. What do you suggest?

Kind regards,
Moses K


On Thu, Apr 4, 2019 at 9:50 PM Noel Kuntze
<noel.kuntze+strongswan-users-ml at thermi.consulting> wrote:

> Hi,
>
> You configured "rightsourceip=10.10.10.0/24" but that's supposed to be a
> site-to-site connection. Use rightsubnet instead.
> rightsourceip is for assigning and requesting virtual IPs. The best way
> for you would be to migrate to swanctl instead.
> Its configuration format is a lot clearer.
>
> Kind regards
>
> Noel
>
> Am 02.04.19 um 11:27 schrieb MOSES KARIUKI:
> > Dear Tobias,
> >
> > :) :)
> > I read the message. But I can't really interpret what setting is needed
> to make it work. I have listed my current configuration. I am still finding
> my way with Linux networking and Strongswan.
> >
> > Please assist. I will really appreciate and also offer assist others.
> >
> > regards,
> > Moses
> >
> >
> >
> > On Tue, Apr 2, 2019 at 11:23 AM Tobias Brunner <tobias at strongswan.org
> <mailto:tobias at strongswan.org>> wrote:
> >
> >     Hi Moses,
> >
> >     > Apr  1 20:57:58 klick-001 charon: 11[IKE] expected a virtual IP
> >     > request, sending FAILED_CP_REQUIRED
> >
> >     I guess reading is hard.  Or is that message (that you explicitly
> marked
> >     in your email) really that unclear?
> >
> >     Regards,
> >     Tobias
> >
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20190408/9d39b226/attachment.html>


More information about the Users mailing list