[strongSwan] help setting up connection for 1 type of traffic
robsonl at conscious.co.uk
Wed Jul 14 13:00:41 CEST 2021
third one! ive figured it, i think, removing the subnet line seems to be
doing the job, i think?
On 14/07/2021 11:42, Lewis Robson wrote:
> Just a follow up, its the auto line that stops connection, not the type
> On 14/07/2021 11:30, Lewis Robson wrote:
>> Hello all.
>> Ive been stuck on this one for many, many hours now!
>> I am trying to set up a connection (split routing?) that will allow 1
>> type of traffic, and the rest will be normally routed through the
>> users device as per there usual connection.
>> e.g. if they hit x ip address with y service, it will be allowed
>> through, otherwise if they went to google and did a whats my ip,
>> there current ip will show and not the ipsec ip.
>> with my current set up, ipsec is working but users get the ipsec ip,
>> if i set to transport mode, I can still connect to the vpn however it
>> stops me being able to ssh on until i stop the strongswan service)
>> here is my config
>> conn into-ext-vpn
>> leftid=servers external ip
>> please can someone advise on how to go about setting it up so that i
>> can have users connect in when they request 1 specific service,
>> otherwise they continue to use there current network
Conscious Solutions Limited
Tel: 0117 325 0200
More information about the Users