OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Archive »
  • 22.1 Legacy Series »
  • Strongswan not starting on 22.1
« previous next »
  • Print
Pages: 1 [2]

Author Topic: Strongswan not starting on 22.1  (Read 4449 times)

Cerberus

  • Newbie
  • *
  • Posts: 48
  • Karma: 2
    • View Profile
Re: Strongswan not starting on 22.1
« Reply #15 on: April 05, 2022, 09:46:18 am »
Hi,

any solution to this? i just created a new opnsense install and trying to setup a s2s ipsec connection. Starting ipsec by hand tells me there is not configuration file in "/usr/local/etc/strongswan.oipensense.d/*.conf". Log is completly empty.

I checked ciphers and i use aes-gcm-256 and sha256, that should be supported on FreeBSD 13.x. This connection was created on the latest version of OPNsense.
Logged

agirling

  • Newbie
  • *
  • Posts: 2
  • Karma: 0
    • View Profile
Re: Strongswan not starting on 22.1
« Reply #16 on: May 09, 2022, 05:46:39 pm »
Any update on this?  I upgraded to 22.1 but the IPsec UI is not writing any configuration files.

As a result my connection cannot offer a proposal during the INIT phase.
Logged

agirling

  • Newbie
  • *
  • Posts: 2
  • Karma: 0
    • View Profile
Re: Strongswan not starting on 22.1
« Reply #17 on: May 10, 2022, 04:56:16 pm »
For future readers, my issue was related to IPsec being used with CARP interfaces.  This has been patched and in the next release cycle.

https://github.com/opnsense/core/commit/4080345a597fbc55c02256996f7ba3ccee78ae49
« Last Edit: May 10, 2022, 05:14:26 pm by agirling »
Logged

evguy2

  • Newbie
  • *
  • Posts: 1
  • Karma: 0
    • View Profile
Re: Strongswan not starting on 22.1
« Reply #18 on: September 29, 2022, 05:28:01 pm »
Quote from: proctor on March 29, 2022, 12:55:57 pm
Quote
Shame on me. - Enable IPsec was not checked...
The web designer is culpable here.  I, having the same problem you were, just spent almost an hour looking for this check box.  It's at the bottom of the "tunnel settings" page which isn't at all obvious.
Logged

NEOSA

  • Newbie
  • *
  • Posts: 3
  • Karma: 0
    • View Profile
Re: Strongswan not starting on 22.1
« Reply #19 on: March 13, 2023, 05:23:15 pm »
Quote from: proctor on March 29, 2022, 12:55:57 pm
Shame on me. - Enable IPsec was not checked...
Hi !

I was creating an IPSec macOS Mobile setup*, and the same shame : forgot to turn it on ;-)

*https://github.com/thomergil/opnsense-ipsec-vpn
Logged

  • Print
Pages: 1 [2]
« previous next »
  • OPNsense Forum »
  • Archive »
  • 22.1 Legacy Series »
  • Strongswan not starting on 22.1
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2023 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2