Feb 28 16:10:47 vpnclient charon-nm[1907]: 08[CFG] handling INTERNAL_IP4_SUBNET attribute failedFeb 28 16:10:47 vpnclient charon-nm[1907]: 08[CFG] handling UNITY_DEF_DOMAIN attribute failedFeb 28 16:10:47 vpnclient NetworkManager[597]: <info> [1551366647.1438] vpn-connection[0x55a6b16584a0,7d3dc8e4-a748-46ff-8029-18b525304335,"VPN-ACCESS",0]: VPN connection: (IP4 Config Get) reply received from old-style pluginFeb 28 16:10:47 vpnclient charon-nm[1907]: 08[CFG] handling UNITY_SPLITDNS_NAME attribute failedFeb 28 16:10:47 vpnclient NetworkManager[597]: <info> [1551366647.1443] vpn-connection[0x55a6b16584a0,7d3dc8e4-a748-46ff-8029-18b525304335,"VPN-ACCESS",0]: Data: VPN Gateway: XXX.XXX.XXX.XXXFeb 28 16:10:47 vpnclient charon-nm[1907]: 08[CFG] handling UNITY_SPLITDNS_NAME attribute failedFeb 28 16:10:47 vpnclient NetworkManager[597]: <info> [1551366647.1443] vpn-connection[0x55a6b16584a0,7d3dc8e4-a748-46ff-8029-18b525304335,"VPN-ACCESS",0]: Data: Tunnel Device: (null)Feb 28 16:10:47 vpnclient charon-nm[1907]: 08[CFG] handling UNITY_SPLITDNS_NAME attribute failedFeb 28 16:10:47 vpnclient NetworkManager[597]: <info> [1551366647.1444] vpn-connection[0x55a6b16584a0,7d3dc8e4-a748-46ff-8029-18b525304335,"VPN-ACCESS",0]: Data: IPv4 configuration:Feb 28 16:10:47 vpnclient charon-nm[1907]: 08[CFG] handling UNITY_SPLITDNS_NAME attribute failedFeb 28 16:10:47 vpnclient NetworkManager[597]: <info> [1551366647.1444] vpn-connection[0x55a6b16584a0,7d3dc8e4-a748-46ff-8029-18b525304335,"VPN-ACCESS",0]: Data: Internal Address: 10.20.35.1Feb 28 16:10:47 vpnclient charon-nm[1907]: 08[CFG] handling UNITY_SPLITDNS_NAME attribute failedFeb 28 16:10:47 vpnclient NetworkManager[597]: <info> [1551366647.1444] vpn-connection[0x55a6b16584a0,7d3dc8e4-a748-46ff-8029-18b525304335,"VPN-ACCESS",0]: Data: Internal Prefix: 32Feb 28 16:10:47 vpnclient charon-nm[1907]: 08[CFG] handling UNITY_SPLITDNS_NAME attribute failedFeb 28 16:10:47 vpnclient NetworkManager[597]: <info> [1551366647.1444] vpn-connection[0x55a6b16584a0,7d3dc8e4-a748-46ff-8029-18b525304335,"VPN-ACCESS",0]: Data: Internal Point-to-Point Address: 10.20.35.1Feb 28 16:10:47 vpnclient charon-nm[1907]: 08[CFG] handling UNITY_SPLITDNS_NAME attribute failedFeb 28 16:10:47 vpnclient NetworkManager[597]: <info> [1551366647.1444] vpn-connection[0x55a6b16584a0,7d3dc8e4-a748-46ff-8029-18b525304335,"VPN-ACCESS",0]: Data: Maximum Segment Size (MSS): 0Feb 28 16:10:47 vpnclient charon-nm[1907]: 08[CFG] handling UNITY_SPLITDNS_NAME attribute failedFeb 28 16:10:47 vpnclient NetworkManager[597]: <info> [1551366647.1444] vpn-connection[0x55a6b16584a0,7d3dc8e4-a748-46ff-8029-18b525304335,"VPN-ACCESS",0]: Data: Forbid Default Route: yesFeb 28 16:10:47 vpnclient charon-nm[1907]: 08[CFG] handling UNITY_PFS attribute failedFeb 28 16:10:47 vpnclient NetworkManager[597]: <info> [1551366647.1444] vpn-connection[0x55a6b16584a0,7d3dc8e4-a748-46ff-8029-18b525304335,"VPN-ACCESS",0]: Data: Internal DNS: 10.20.30.254Feb 28 16:10:47 vpnclient charon-nm[1907]: 08[IKE] installing new virtual IP 10.20.35.1Feb 28 16:10:47 vpnclient NetworkManager[597]: <info> [1551366647.1444] vpn-connection[0x55a6b16584a0,7d3dc8e4-a748-46ff-8029-18b525304335,"VPN-ACCESS",0]: Data: DNS Domain: '(none)'Feb 28 16:10:47 vpnclient charon-nm[1907]: 08[IKE] received ESP_TFC_PADDING_NOT_SUPPORTED, not using ESPv3 TFC paddingFeb 28 16:10:47 vpnclient NetworkManager[597]: <info> [1551366647.1444] vpn-connection[0x55a6b16584a0,7d3dc8e4-a748-46ff-8029-18b525304335,"VPN-ACCESS",0]: Data: No IPv6 configurationFeb 28 16:10:47 vpnclient charon-nm[1907]: 08[IKE] CHILD_SA VPN-ACCESS{6} established with SPIs c449b628_i cd1192f2_o and TS 10.20.35.1/32 === 10.0.0.0/8Feb 28 16:10:47 vpnclient NetworkManager[597]: <info> [1551366647.1452] vpn-connection[0x55a6b16584a0,7d3dc8e4-a748-46ff-8029-18b525304335,"VPN-ACCESS",0]: VPN connection: (IP Config Get) completeFeb 28 16:10:47 vpnclient charon-nm[1907]: 08[IKE] received AUTH_LIFETIME of 28033s, scheduling reauthentication in 27433sFeb 28 16:10:47 vpnclient NetworkManager[597]: <info> [1551366647.1452] vpn-connection[0x55a6b16584a0,7d3dc8e4-a748-46ff-8029-18b525304335,"VPN-ACCESS",0]: VPN plugin: state changed: started (4)Feb 28 16:10:47 vpnclient charon-nm[1907]: 08[IKE] peer supports MOBIKE
root@opnsense01:/usr/local/etc # cat strongswan.conf# Automatically generated, please do not modifystarter { load_warning = no}charon { threads = 16 ikesa_table_size = 32 ikesa_table_segments = 4 init_limit_half_open = 1000 ignore_acquire_ts = yes syslog { identifier = charon daemon { ike_name = yes tnc = 4 } } install_routes = no cisco_unity = yes plugins { attr { subnet = 10.0.0.0/8 split-include = 10.0.0.0/8 dns = 10.20.30.254 # Search domain and default domain 28674 = contoso.com 28675 = contoso.com,example.com 28679 = 2 } eap-radius { servers { server1 { address = XXX.XXX.XXX.XXX secret = "<PASSWORD>" auth_port = 1812 } } } }}root@opnsense01