Franco Fichtner fb5e786353 ipsec: allow tunnel isolation compatibility mode
At least FortiGate doesn't like meshing the phase 2 entries so
instead isolete each phase 2 entry in its own tunnel.  This is
supposedly IKEv1 trickery, but it works...

Also see: https://wiki.strongswan.org/projects/strongswan/wiki/FAQ#Multiple-subnets-per-SA
Also see: https://lists.strongswan.org/pipermail/users/2013-March/004478.html
2016-08-19 18:44:02 +02:00
..
2016-08-19 15:06:11 +02:00
2016-08-15 07:31:18 +02:00
2016-03-10 14:52:29 +01:00