[strongSwan] Site to site vpn using certificates-no peer config in log files

2011-11-21 Thread Edward Cooke
Hi all, I'm trying to get a site to site VPN set up between to strongswan Linux systems. I can't get past the "no matching peer config found" message on Sun (my datacenter). I've tried using the net-net ikev2 config example in the tests as that is closest to what I am trying to d

Re: [strongSwan] Android/Stongswan Integration

2011-11-21 Thread zhen chen
Hi Tobias, If I used 4.6.1, is there any special configuration I need to enable to build the starter and stroke when I build the Android?  I assume I wouldn't need to apply any of the three frontend patches any more?  thanks! Zhen "With 4.6.1 you now have also the option to build starter and st

Re: [strongSwan] can not establish MSCHAPv2 tunnel using ipsec.conf/ipsec.secrets in strongswan 4.6.1 release on Android Gingerbread

2011-11-21 Thread Andreas Steffen
Hi Nitin, on the Androis side add leftsourceip=%config to the connection definition in ipsec.conf. Regards Andreas On 21.11.2011 12:38, Nitin Verma wrote: > Hi Andreas, > Thanks for the quick reply. It solve the problem. > Now at the Android: > > # ipsec stroke status > uname: not found >

Re: [strongSwan] can not establish MSCHAPv2 tunnel using ipsec.conf/ipsec.secrets in strongswan 4.6.1 release on Android Gingerbread

2011-11-21 Thread Nitin Verma
Hi Andreas, Thanks for the quick reply. It solve the problem. Now at the Android: # ipsec stroke status uname: not found uname: not found [: not found Security Associations (1 up, 0 connecting): android[2]: ESTABLISHED 6 minutes ago, 192.168.1.2[192.168.1.2]...192.168.1.154[192.168.1.154]

Re: [strongSwan] can not establish MSCHAPv2 tunnel using ipsec.conf/ipsec.secrets in strongswan 4.6.1 release on Android Gingerbread

2011-11-21 Thread Andreas Steffen
Hello Nitin, your ubuntu server does not initiate EAP-Identity. Therefore the EAP-MSCHAPv2 authentication requested is for IKEv2 user identity 192.168.1.2 and not for EAP identity deepika. You should change the ubuntu server entry to eap_identity=%any and make sure that you enabled, built and l

[strongSwan] can not establish MSCHAPv2 tunnel using ipsec.conf/ipsec.secrets in strongswan 4.6.1 release on Android Gingerbread

2011-11-21 Thread Nitin Verma
Hi, I have been able to successfully establish IPSec IKEv2 tunnel between Nexus S (running 2.3.5_r1) and a ubuntu server. However, the latest 4.6.1 release supports starter and stroke executables at Android and I am trying to establish the same connection using ipsec.conf and ipsec.secrets. My ser