Hi Tobias,

That was it, the client was not expecting a certificate from the server
side!
Thanks for all the help.

BR,
Giorgos

On Thu, Dec 6, 2018 at 10:15 AM Tobias Brunner <tob...@strongswan.org>
wrote:

> Hi Giorgos,
>
> > I am trying to connect my galaxy s9+ via the native IKEv2 client to a
> > strong swan server of mine via IKEv2-PSK.
>
> That's not exactly what you are doing.  From the server's perspective
> you are using a PSK only to authenticate the client (rightauth), the
> server is authenticated with a certificate (leftauth, defaults to pubkey
> and you also load a certificate).  Maybe the client expects the server
> to authenticate with a PSK too, or it doesn't trust the server cert, or
> the identity doesn't match.  Anyway, without client log it's difficult
> to say what its reason for returning an AUTH_FAILED notify is.
>
> Regards,
> Tobias
>

Reply via email to