Re: [strongSwan] IPSEC vpn(strongswan) + users in AD

2021-02-26 Thread Noel Kuntze
Hello Gregory, Your log already gives the clues. (15) mschap: WARNING: No Cleartext-Password configured. Cannot create NT-Password (15) mschap: WARNING: No Cleartext-Password configured. Cannot create LM-Password (15) mschap: Creating challenge hash with username: testuser (15) mschap: Clien

Re: [strongSwan] IPSEC vpn(strongswan) + users in AD

2021-02-26 Thread Michael Schwartzkopff
On 26.02.21 19:39, Gregory Edigarov wrote: > Good day, > > some clues wanted. > > strongswan -> freeradius -> AD > > conn ikev2-vpn >     auto=add >     compress=no >     type=tunnel >     keyexchange=ikev2 >     fragmentation=yes >     forceencaps=yes >     dpdaction=clear >     dpddelay=300s >   

[strongSwan] IPSEC vpn(strongswan) + users in AD

2021-02-26 Thread Gregory Edigarov
Good day, some clues wanted. strongswan -> freeradius -> AD conn ikev2-vpn     auto=add     compress=no     type=tunnel     keyexchange=ikev2     fragmentation=yes     forceencaps=yes     dpdaction=clear     dpddelay=300s     rekey=no     left=%any     leftid=@mailtest.go-lamp.com     leftcert=s