On 2016-04-01, Sly Midnight <[email protected]> wrote: > I am wondering is there a way to allow either via /etc/ipsec.conf or > /etc/isakmpd/isakmpd.policy to configure a road warrior type of IPsec VPN > access to my router that accomodates multiple types of IPsec clients that > regrettably have limitations in the auth/enc/DH groups they support.
auth/enc: yes, but you will need isakmpd.conf, ipsec.conf is not flexible enough. groups will be a problem: see BUGS in isakmpd.conf(5).

