[Openswan Users] multiple groups and subnets in openswan

Paul Wouters paul at xelerance.com
Mon Jun 9 14:04:36 EDT 2008

> I'm not sure if this feature will work with openswan. But anyway, does 
> anyone has setup/implemented more than one groups and/or subnets in an 
> openswan server? So that each group or subnet can have separate access 
> privileges and resources. If this is not supported in Openswan let me 
> know asap since I've been searching the Internet about it but without 
> success.

Using X.509 you can match them on their ASN.1 ID

eg one conn has:

	rightid="C=CA, O=Openswan, OU=Sales, CN=*"

the other conn has:

	rightid="C=CA, O=Openswan, OU=Developers, CN=*"


More information about the Users mailing list