Hi, strongSwan is an IKE daemon. Its purpose is to negotiate dynamic SAs. As soon as you have an IKE daemon, you do not need any static SAs anymore. It therefore does not support static SAs. If you want that, you need to use your system's tools (e.g. iproute2 (ip xfrm ...)).
Kind regards Noel On 19.01.2018 12:35, manimuthu m a wrote: > > > On Fri, Jan 19, 2018 at 4:38 PM manimuthu m a <[email protected] > <mailto:[email protected]>> wrote: > > HI All, > > My sincere apology for my ignorance. > > I just started to work on strongswan and ipsec in linux. My need is very > simple for now, I tried googling it for more than a week. Most probably I > didn't use the right term. > > Can we establish manual SA using strongswan? if so can someone help me > with an example? > > Once again sorry for my ignorance. > > Regards, > Manimuthu. >
signature.asc
Description: OpenPGP digital signature
