Search
Results (101)
- Feature #13948 (New): Allow %any for local_addrs IPsec endpoint setting
- Charon allows setting %any as local_addrs, al ... ing and the setting is behaving as intended.
- Feature #13902 (New): Add configuration option to IPsec VPN section to allow strongSwan to use RSA-PSS signatures
- When an IKEv2 client indicates support for RF ... ng a VPN connection from a compatible client.
- Bug #13887 (New): General protection fault in key_freesp()
- <pre>Fatal trap 9: general protection fault w ... at key_freesp+0xe/frame 0xfffffe0000429960 ipsec_delete_pcbpolicy() at ipsec_delete_pcbpolicy+0x37/frame 0xfffffe00004299 ... mly". I am unaware of any steps to reproduce.
- Feature #13751 (New): Add language to IPsec configuration for disabled ciphers
- Apparently it is confusing to users to have inapplicable hash methods disabled in the IPsec configuration pages. Add some language th ... plicable to any selected encryption methods.@
- Bug #13723 (Confirmed): dpinger doesn't renew Gateway Monitoring IP address for IPsec VTi after changing IPsec VTi subnet
- Tested on 22.05 Steps to reproduce: 1. Create Routed IPsec with IPv6 addresses as a Local and Remote. I ... 00:248:250::1 and fc00:248:250::2 2. assign IPsec as an Interface and check that gateway being ... gateway as Online 3. (it doesn't matter if IPsec is Down or Up) change IPsec VTi subnet. I just used fc00:248:2::1 and fc ... anges so 1. Status/Interfaces shows that IPsec Vti gets correct IPs as an Interface IP and ... Ps as a Gateway and as Monitor IP 3. Status/IPsec shows that IPsec is UP and running 4. Diagnostics/Ping I can ping new remote IP with IPsec Vti as a Source (and I see new IP as a Sourc ... s_status.png') 2. running Packet Capture on IPsec and on IPsec VTi shows that dpinger just stops sending IC ... ay IP. Last message in System log was 'Saved IPsec...
- Feature #13710 (New): Support UTF-8 CA/Certificate subject components
- Some support was added for UTF-8 CA/Certifica ... checked for similar issues (e.g. cert-based IPsec identifiers) And potentially more points ... be revealed during testing and development.
- Bug #13707 (New): Unbound not binding to LAN on startup when explicitly set
- Hi, This is related to the following forum ... se the interface remains up the whole time.
- Bug #13487 (New): GUI IPV6-WAN-status stays " ... ketloss" after a short communication hick up
- After what is probably a short communication ... e.lan check_reload_status 391 - - Restarting IPsec tunnels <13>1 2022-09-09T04:12:53.474997+02 ... rum.netgate.com/topic/173356/issues-with-ipv6
- Bug #13486 (New): stongswan attributes should be comma-separated instead of whitespace-separated
- The strongswan docs mention that attribute li ... using them as-is. This leads to a broken IPSec configuration and is especially relevant sin ... ns_split</pre> and attribute 25 specifically.
- Bug #13438 (New): No IPv6 tracked interface addresses after reboot
- I have a 6rd connection over PPPoE to Century ... pelenor check_reload_status[396]: Restarting IPsec tunnels Aug 21 19:14:25 pelenor check_reloa ... pelenor check_reload_status[396]: Restarting IPsec tunnels Aug 21 22:52:08 pelenor check_reloa ... iations if a more general solution exists.