[Swan] IPsec/L2TP Subnet Restriction

Paul Wouters paul at nohats.ca
Wed Mar 30 16:21:32 UTC 2016


On Tue, 29 Mar 2016, Chris Seguin wrote:

> My connection description looks like the following:
> 
> conn RWConn # road warrior connection description
> 
>   authby=secret
> 
>   pfs=no
> 
>   auto=add
> 
>   keyingtries=3
> 
>   rekey=no
> 
>   type=transport

Transport mode means 1 ip to 1 ip

>   leftsubnets={ 192.168.10.0/24 }

So you cannot have subnets. Perhaps you want type=tunnel and not L2TP ?

Paul


More information about the Swan mailing list