[strongSwan] local_ts based on user/group

Christian Salway christian.salway at naimuri.com
Thu Oct 31 09:43:28 CET 2019


Hi Tobias,

How would that work? Because a user can be a member of one or more groups and thus how does strongswan select the connection with all the groups.

User1
  Network-A

User2
  Network-A
  Network-B

User3
  Network-A
  Network-B
  Network-C

How would strongswan choose the correct connection based on that user/group strategy.

Sent from my iPhone

> On 31 Oct 2019, at 08:17, Tobias Brunner <tobias at strongswan.org> wrote:
> 
> Hi Christian,
> 
>> Is it possible to dynamically set the *local_ts* based on the group the
>> user is a member of?
> 
> Sure, it's straight-forward given users are already assigned the
> appropriate groups (i.e. just configure a second connection, maybe using
> references, with different groups and local_ts settings).
> 
> Regards,
> Tobias


More information about the Users mailing list