Hi Matthew, actually the default policy settings of the Linux kernel will transmit all communications not matched by an IPsec policy in the clear.
Regards Andreas On 02/09/2016 07:23 PM, Matthew Boedicker wrote: > Are there any configuration settings that can make strongswan "fail > open" when in host-to-host transport mode? It would try to negotiate an > encrypted connection but fall back to communicating in the clear if the > encryption failed for some reason. > > Thanks. > ====================================================================== Andreas Steffen [email protected] strongSwan - the Open Source VPN Solution! www.strongswan.org Institute for Internet Technologies and Applications University of Applied Sciences Rapperswil CH-8640 Rapperswil (Switzerland) ===========================================================[ITA-HSR]==
smime.p7s
Description: S/MIME Cryptographic Signature
_______________________________________________ Users mailing list [email protected] https://lists.strongswan.org/mailman/listinfo/users
