Here's what I use. Definitely works with ikev2 without --enable-ikev2. Can't
speak to ikev1. I use it with certificate-based authentication.
./configure --prefix= --enable-eap-mschapv2 --enable-eap-identity
--enable-openssl --enable-eap-md5 --enable-eap-tls --enable-eap-dynamic
--enable-system
I did a bit more checking and found references to "ip xfrm policy list"
and "ip xfrm state list" as possible sources of the confirmation of
operation I am seeking. I ran these commands with the VPN up and have
attached the output of these commands.
I am not trained in reading these reports, b