[Openswan Users] Issue with multiple conn statement

Paul Wouters paul at xelerance.com
Tue Jun 7 18:57:25 CEST 2005


On Tue, 7 Jun 2005, Deepak Naidu wrote:

> When using multiple connection in VPN server side or
> VPN  client side.  The connection initiated does not
> match the exact connection instead matches the other
> connection and gets established.

Be aware that if the phase 1 for two conns are the same,
then the name in the logfile might be confusing, since pluto
might 'pick' the wrong name.
If your connections differ in phase 2 and the wrong one is 
picked, you have to try and make those connections more 
specific and different. This can usually be done by
adding right/leftid's, assuming you are not trying to do
roadwarriors with psk. if you do, that is what you want to
try and phase out.

Paul


More information about the Users mailing list