Re: [Swan] Azure + LibreSwan

2018-09-28 Thread Paul Wouters
3:19.173091: "west" #20: STATE_PARENT_I3: PARENT SA established Paul Thanks Joe. -Original Message- From: Paul Wouters Sent: 27 September 2018 18:15 To: Madden, Joe Cc: swan@lists.libreswan.org Subject: RE: [Swan] Azure + LibreSwan On Thu, 27 Sep 2018, Madden, Joe wrote: I've ran

Re: [Swan] Azure + LibreSwan

2018-09-27 Thread Madden, Joe
Of Madden, Joe Sent: 26 September 2018 16:30 To: Paul Wouters Cc: swan@lists.libreswan.org Subject: Re: [Swan] Azure + LibreSwan Thanks paul - I'll give it a try! Cheers Joe. -Original Message- From: Paul Wouters Sent: 26 September 2018 14:45 To: Madden, Joe Cc: swan@lists.libreswan.org

Re: [Swan] Azure + LibreSwan

2018-09-26 Thread Madden, Joe
Thanks paul - I'll give it a try! Cheers Joe. -Original Message- From: Paul Wouters Sent: 26 September 2018 14:45 To: Madden, Joe Cc: swan@lists.libreswan.org Subject: Re: [Swan] Azure + LibreSwan On Wed, 26 Sep 2018, Madden, Joe wrote: > Sep 26 10:33:24 gw pluto[788]: packet f

Re: [Swan] Azure + LibreSwan

2018-09-26 Thread Paul Wouters
On Wed, 26 Sep 2018, Madden, Joe wrote: Sep 26 10:33:24 gw pluto[788]: packet from #:500: initial parent SA message received on 87.85.199.82:500 but no connection has been authorized with policy RSASIG+IKEV2_ALLOW The above line I suspect is the issue (Because we are not using RSK to

[Swan] Azure + LibreSwan

2018-09-26 Thread Madden, Joe
Hi List, I have an azure VPN gateway running (vpnGW1) with a custom ipsec policy with the following settings: [ { "dhGroup": "DHGroup14", "ikeEncryption": "AES256", "ikeIntegrity": "SHA256", "ipsecEncryption": "AES256", "ipsecIntegrity": "SHA256", "pfsGroup":