Hello Brian, The IKEv2 charon daemon supports arbitrary IP ranges for traffic selectors but the IPsec stack of the Linux kernel can configure subnets based on network masks only.
BTW, 0.0.0.0 - 255.255.255.255 can be written as 0.0.0.0/0 Regards Andreas On 23.05.2011 07:18, Brian Zhao - 赵宪鹏 wrote: > Dear Andreas, > > > > I want to establish a VPN tunnel like below: > > Branch Office : > Local Network : x.y.z.t/a > Remote Network : 0.0.0.0 - 255.255.255.255 > > Central Office: > Local Network : 0.0.0.0- 255.255.255.255 > Remote Network : x.y.z.t/a > > > > Do strongswan-4.2.8 have support it? In other way, does IP range is > supported by strongswan? If not, then the IP range is in your plan? > > > > Thanks! > > > > > > Brian > -- ====================================================================== Andreas Steffen andreas.stef...@strongswan.org strongSwan - the Linux VPN Solution! www.strongswan.org Institute for Internet Technologies and Applications University of Applied Sciences Rapperswil CH-8640 Rapperswil (Switzerland) ===========================================================[ITA-HSR]== _______________________________________________ Users mailing list Users@lists.strongswan.org https://lists.strongswan.org/mailman/listinfo/users