HI community i have little issue i established connecton between my site to site and i am using strongswan based ipsec vpn...i have a question why it not installed in my setting...
Your question is entirely unclear -- if you have a connection, it must be installed and configured.
That said, I would highly recommend using a more modern protocol like WireGuard or even OpenWrt -- you will find many more users who are knowledgeable about that them. Strongswan has a relatively small userbase in this community. Do you have an option to use one of the two other protocols?
No i have to work on strongswan
AES_CBC-128/HMAC_SHA2_256_128/PRF_HMAC_SHA2_256/CURVE_25519
** established 1s ago, reauth in 10769s**
** net-net: #1, reqid 1, INSTALLED, TUNNEL, ESP:AES_GCM_16-128**
** installed 1s ago, rekeying in 4880s, expires in 5939s**
** in c75a63d0, 84 bytes, 1 packets, 0s ago**
** out c75abd4f, 84 bytes, 1 packets, 0s ago**
** local 10.1.0.0/16**
** remote 10.2.0.0/16**
i gave an example like this it established connection than installed but on my devces it didn't installed and i want that it installed..
I don't understand... it is installed but it isn't installed??
i said after establishing connection it install on device in normal case but in my case the connection is established but not installed.....
bro have you any idea about this error?
08[CFG] selected proposal: ESP:AES_CBC_128/HMAC_SHA2_256_128/NO_EXT_SEQ
08[KNL] received netlink error: Function not implemented (89)
08[KNL] unable to add SAD entry with SPI ccd6d57f (FAILED)
08[KNL] received netlink error: Function not implemented (89)
08[KNL] unable to add SAD entry with SPI c5a45f37 (FAILED)
08[IKE] unable to install inbound and outbound IPsec SA (SAD) in kernel
08[IKE] failed to establish CHILD_SA, keeping IKE_SA
08[ENC] generating IKE_AUTH response 1 [ IDr AUTH N(NO_PROP) ]
08[NET] sending packet: from 1.1.1.2[500] to 1.1.1.1[500] (128 bytes)