Re: [strongSwan] Very strange strongSwan log entries

2017-12-08 Thread bls s
Hi, just wanted to let everyone know that in switching to Charon-systemd all of these bogus log entries have gone away (which was my hope when I started down the path of switching!). In case anyone else is using a similar configuration, here’s the equivalent swanctl.conf for the prior

[strongSwan] DN vs SAN fields

2017-12-08 Thread Jafar Al-Gharaibeh
I have two certificates certA.pem with DN set to "CN=strongswan" certB.pem with DN set to "CN=strongswan" and one san field set to "IP:2.2.2.2" If I use certA.pem in a config like the following, it works (i.e I can get the connection up and running): conn vpn    left=1.1.1.1