Project

General

Profile

Actions

Bug #13788

closed

Allow IPSEC .vips-configuration in GUI - connections.<conn>.vips ModeConfig

Added by Stefan Bauer almost 2 years ago. Updated almost 2 years ago.

Status:
Duplicate
Priority:
Normal
Assignee:
-
Category:
IPsec
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Default
Affected Version:
All
Affected Architecture:
All

Description

To be able to request an ip address from another vpn-server, ipsec configuration needs vips-support.
https://docs.strongswan.org/docs/5.9/features/vip.html

However there is no option in pfsense GUI to add ... for example to swanctl.conf:

vips = 0.0.0.0, ::

Please allow either to have an option in GUI to include additional configuration in config file or have a checkbox to enable/disable vips with default setting (0.0.0.0, ::) to just request addresses from remote concentrator.

See:
https://forum.netgate.com/topic/169621/vpn-ipsec

Thanks.


Related issues

Is duplicate of Feature #8346: Allow pfSense to act as an IPsec VPN clientNew

Actions
Actions #1

Updated by Jim Pingle almost 2 years ago

  • Status changed from New to Duplicate

Duplicate of #8346 though I changed it to be more general just now, it was there to add "client" style support.

There is a ton more to it than just that one type of config option, and it may not be viable at all the way IPsec works on pfSense.

Actions #2

Updated by Jim Pingle almost 2 years ago

  • Is duplicate of Feature #8346: Allow pfSense to act as an IPsec VPN client added
Actions

Also available in: Atom PDF