[strongSwan] xauth-pam and ip address

2017-07-14 Thread Mike LoSapio
Hi all - I'm working on setting up xauth-pam but PAM seems to be trying to use my client's internal IP address when it should clearly be 'losapio'. Server: CentOS Linux release 7.3.1611 (Core) strongswan-5.4.0-2.el7.x86_64 Client: Mac OSX 10.12.5 (16F73) Native VPN Client configured via a profil

Re: [strongSwan] "auto = try_again_later" on DNS problems?

2017-07-14 Thread Tobias Brunner
Hi Harald, > I tried both "auto = start" You could set charon.retry_initiate_interval, then initiation will be tried again if the DNS resolution failed. > and "auto = route". I pushed a change to the child-sa-rekeying branch that addresses this. Unless %dynamic is used in the remote traffic sel