Questions tagged [openswan]
129 questions
2
votes
2 answers
How do I configure a Linux VPN Client to get into a network through a Fortigate firewall?
In order to connect to my job's VPN, I have been given by the network admin:
a username
a password
a PSK
I run Ubuntu at home. I know Fortigate's VPN should be a vanilla IPSec, so OpenSwan should do the trick. Still, I can't get it to work.
I have…

GomoX
- 796
- 3
- 8
- 21
2
votes
1 answer
what is the proposal string for aes-gem256 deffie helman group 20, esp
As a developer tasked with connecting to a vpn without preconfigured profile scripts, i'm fumbling through setting up a strongswan ipsec.conf file. My current hurdle is an "invalid proposal string" message in my syslog after I launch the…

T3.0
- 121
- 3
1
vote
0 answers
Trouble with routing on VPN with Openswan IPSec
Good morning, I'm having trouble configuring access to the servers through a VPN. The client can connect to the VPN perfectly, but access to the servers does not work.
The conf of my connection is this:
conn alex
type=tunnel
authby=secret
…
1
vote
0 answers
Openswan l2tp vpn ppp wrong ip address
Using Openswan with xl2tp on archlinux (4.20) to connect to a vpn, I can create the tunnel and the ppp interface is created howerver it gets the wrong ip address:
enp4s0: mtu 1500 qdisc mq state UP group…

2A-66-42
- 111
- 3
1
vote
1 answer
How to connect VPN Client Openswan
I have VPN server using Openswan with address 103.19.208.247
Then, i want connect my laptop (CENTOS) with IP 103.19.208.243 to VPN server. Here my configuration:
/etc/ipsec.conf
config setup
protostack=netkey
dumpdir=/var/run/pluto
nat_traversal=yes…

lala
- 13
- 4
1
vote
1 answer
IPSec tunnel fails in phase 2
We are trying to establish a tunnel between our EC2 Instance and remote Cisco 3000 series device where it is failing for Phase2. Below is the scenario:
FTP Server(ec2-ubuntu) <---->VPN Server(ec2-ubuntu) <------> Cisco 3000 <---> Client Servers…

Shailesh Sutar
- 1,517
- 5
- 23
- 41
1
vote
0 answers
Ubuntu site-to-site VPN with no LAN on one side
A customer requires us to connect to their system via a site-to-site VPN tunnel. ("Client-based VPN solutions are not accepted.") Once the tunnel is established we'll be consuming data over the connection via a JMS API.
Here's the catch: We'd like…

Roger
- 111
- 2
1
vote
1 answer
OpenSwan - IPSec VPN - tunnel established but can't see a specific server there
I have to connect my server to a VPN tunnel thought Internet to see a local server that is on IP 192.168.20.100
Here are IPSec AND IKE settings from server (not mine , I do not own the VPN server)
Settings
Here is tunnel data:
Public IP:…

user3781074
- 11
- 1
- 5
1
vote
0 answers
OpenSwan and L2TPd traversing secondary gateway
I need some help with a networking project using Linux (RHEL based) and open swan with L2TPd (xl2tpd). While the initial setup works great, I want my VPN traffic to traverse over the secondary network interface which has routes that traverse over a…

PsychoSquirrel
- 11
- 3
1
vote
0 answers
Why would ping oscillate between receiving bytes and redirects over a VPN?
I have a VPN set up between an Ubuntu 14 VM under fusion on my side and a SonicWall on the other side. The Ubuntu VM is dedicated to the task.
When I ping a remote address, the results are very strange. Sometimes I get back the expected 64 bytes.…

David Patterson
- 141
- 1
- 6
1
vote
1 answer
Can't establish site to site vpn connection between Cisco 3900 and strongSwan client
I have website, which displays data, received from gsm modems. So i am trying to connect my website to GSM network provider using vpn.
Provider side there is a Cisco 3900, configured as site to site vpn server and my side i have strongswan installed…

iss_628
- 21
- 1
- 5
1
vote
0 answers
Docker + VPN LAN to LAN
We just migrated our applications to a Docker environment.
I have many containers running my Python Application in my VM. (4 containers per VM). This is a multi-tenant application.
This application requires to connect to specific customer…

gogasca
- 343
- 2
- 15
1
vote
0 answers
Openswan to Cisco ASA IPSec tunnel - specific IP address range required. Netmap?
I'm attempting to set up a VPN tunnel between a Cisco ASA 5520 and an Openswan server running on Ubuntu 14.04 on a Amazon VPC instance. I do not have access to the ASA, and have been given the following connection requirements from that end - …

Adam
- 11
- 2
1
vote
0 answers
IPsec and pinging rightsubnets
I have been racking my brain about this. I have openswan running and I have been able to get tunnels up. Unfortunately, when I try to ping computers on my right subnet, I am not able to get any response. I have an Amazon ec2 machine using Elastic…

confused
- 11
- 1
1
vote
1 answer
IPSec Tunnel goes down during long periods of inactivity
I have 2 AWS regions I have connected using an OpenSWAN IPSec tunnel. This works great in our production environment but in our test environment where 1 of the regions has long periods of inactivity, the tunnel will go down and I have to SSH to the…

Uberzen1
- 179
- 1
- 1
- 8