There is a page at the strongswan site that talks about different options for 
route-based tunneling (Google it), which is what I think you want... You could 
tie the IP Xfrm activity to a virtual interface... Vti-based, xfrm-based, or 
tun-tap based.I think you may want to look at that.Also, is there a reason your 
specifically choosing ikev1, as opposed to ikev2 in your config?

Attachment: __attachment_message__1584717838827.eml
Description: application/eml



Reply via email to