[strongSwan] unable to add pseudo IPIP SA with SPI c1bb6ffe: Invalid argument

2011-11-13 Thread Lupe Christoph
Hi! I was forced by a buggy openswan port to try StrongSwan on OpenWRT Backfire 10.03.01 RC6 (pluto did not receive reply packets, if you care). The server is still using OpenSwan. But even after a lot of fiddling with settings I can't get StrongSwan to connect. Here is the info that hopefully

[strongSwan] Traffic with dscp marking (other than BE) not going through IPsec tunnel

2011-11-13 Thread Meera Sudhakar
Hi, My aim is to create two IPsec tunnels using strongSwan between two end-points, each having a different dscp marking (like say EF, BE, AF31 etc). Right now, I see that when I set the dscp marking as BE (default), the traffic goes through the designated IPsec tunnel. When I use anything else,