[strongSwan] avoid ip lease and use bridge

2014-03-28 Thread Miroslav Kubiczek
Hi, I’m trying to use iPhone with strongswan VPN server. The problem is that the IP of the VPN server is 10.10.16.156 and packets sent from the machine are having source IP 10.10.16.132 (from lease). Is there a way to remove that IP leasing? I want to keep using 10.10.16.156. 2nd issue: is

[strongSwan] SHA-256 for IKE_AUTH (IKEv2) ?

2014-03-28 Thread ABULIUS, MUGUR (MUGUR)
Hello, Can you please specify if StrongSwan supports for IKEv2 Authentication Payload RSA Digital signatures using SHA-256 as hash function? The RFC 5596 (IKEv2) at §3.8 Authentication Payload makes reference to RSAES-PKCS1-v1_5 signature scheme for which the RFC 3447 includes SHA-256. Best