[Openswan Users] Considering authentication mode while selecting a connection to respond

Paul Wouters paul at xelerance.com
Mon Oct 6 13:22:40 EDT 2008


On Mon, 6 Oct 2008, hiren joshi wrote:

> Using openswan-2.4.9 I observed that for net-to-net connections, it
> doesn't consider authentication mode (Main/Aggressive) while selecting
> a connection to respond.
> Is there any way to configure openswan to respond to a request if it
> matches the authentication mode configured.

It should happen using refineconnection() and related functions. Is this
still an issue for openswan 2.6.18? Eg there should not be an option, as
openswan can see on the first packet if it is Aggressive or Main mode, and
should then be able to pick wisely.

Paul


More information about the Users mailing list