Your identities must be consistent on both sides. Either you keep
to subject distinguished names (DNs):
ishan:
conn host-host
left=192.168.3.3
leftcert=ishanCert.pem
leftid=C=AU, ST=QLD, O=Mincom Pty. Ltd., OU=rvce, CN=ishan,
e=ishansharm...@gmail.com
right=192.168.3.4
I guess your missing a comma in /etc/ipsec.conf on wt8510w:
rightid=C=nl, ST=zh, L=mld, O=ivent, OU=ric, CN=vpngateway E=* # id of
gateway
Insert , between CN=vpngateway and E=*. The correct line would be
rightid=C=nl, ST=zh, L=mld, O=ivent, OU=ric, CN=vpngateway, E=* # id
of gateway
The
Am Mittwoch, 11. März 2009 15:53:55 schrieb Martin Willi:
However, after a second the resolv.conf will be modified again, and the
DNS settings provided from strongSwan gateway disappears. Can anyone on
the list give me a hint, what is going wrong here?
In the meantime, the only way to use
hello..
plz tell me how to create host certificate and key.
this how i have done in the case of host-host case:
1. created strongswanCert.pem, strongswanKey.pem [at moon] using the README
file.
2. then i pasted strongswanCert.pem, strongswanKey.pem at sun.
3. created hostCert.pem, hostReq.pem
Hi,
just as in the Subject, I have a low priority feature request.
At the moment I try to migrate as many tunnels as possible to IKEv2. It
would be nice to use twofish with charon as an alternative to aes for
IKEv2.
Thanks
Dirk
___
Users mailing list
hello
i tried to setup IKEv2 host-host but i stuck with the received
AUTHENTICATION_FAILED notify error error. plz help me to find the mistake.
the overall description like syslog, ipsec.conf and the console output is is
given in http://docs.google.com/Doc?id=dcnv8x8t_10g6zczndrhl=en from
Hi
--On Friday, March 13, 2009 00:26:21 +0530 abhishek kumar
abhishekr...@gmail.com wrote:
no matching config found for '192.168.3.4'...'192.168.3.3'
just a guess: try switching the left and right in ipsec.conf on sun to:
conn host-host
left=192.168.3.4
right=192.168.3.3