StrongSwan ipsec.conf template is incomplete
Bug #1456336 reported by
Tobias
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
neutron |
Fix Released
|
Undecided
|
Yi Jing Zhu |
Bug Description
After switching from openswan to strongswan our VPN services were not working anymore.
I figured out that the strongswan ipsec.conf template is incomplete. Attributes like IKE and IPSEC Policy were missing.
After modification of the template everything is working again. I attached my fixed template. Comments do not work for strongswan, so the template has no comments. Sorry for that.
To post a comment you must log in.
Had to add "rightallowany=yes" to the template as dynamic ipsec site to site connections did not come up after ip change of the peer anymore.