Dear StrongSwan Developer, It appears that the server is not doing the TS narrowing. On the server side, I am using leftsubnet=10.10.10.0/24. On the client side, I am using rightsubnet=0.0.0.0/24:
charon: 05[IKE] assigning virtual IP 10.10.10.1 to peer '[email protected]' charon: 05[IKE] traffic selectors 0.0.0.0/24 === 0.0.0.0/0 inacceptable charon: 05[IKE] failed to establish CHILD_SA, keeping IKE_SA charon: 05[ENC] generating IKE_AUTH response 3 [ AUTH CP(ADDR) N(AUTH_LFT) N(MOBIKE_SUP) N(ADD_4_ADDR) N(ADD_6_ADDR) N(TS_UNACCEPT) ] Thank you! Robert
_______________________________________________ Users mailing list [email protected] https://lists.strongswan.org/mailman/listinfo/users
