![venkata anil](/assets/img/avatar_default.png)
VPNaas is not working on Fedora/centos devstack. Fedora/centos uses Libreswan(fork of the Openswan IPSEC VPN) for ipsec. Libreswan needs nssdb to be initialised before 'ipsec pluto' command, otherwise pluto daemon will fail to run Change-Id: I54558208b2aaa82bda09c0db96042d236eceba69 Closes-bug: #1444017
28 lines
1.3 KiB
INI
28 lines
1.3 KiB
INI
[DEFAULT]
|
|
# VPN-Agent configuration file
|
|
# Note vpn-agent inherits l3-agent, so you can use configs on l3-agent also
|
|
|
|
[vpnagent]
|
|
# vpn device drivers which vpn agent will use
|
|
# If we want to use multiple drivers, we need to define this option multiple times.
|
|
# NOTE: StrongSwan and openSwan cannot be installed at the same time. Thus, both cannot
|
|
# be enabled for use. In the future when flavors/STF support is available,
|
|
# this will still constrain the flavors which can be used together.
|
|
# vpn_device_driver=neutron_vpnaas.services.vpn.device_drivers.ipsec.OpenSwanDriver
|
|
# vpn_device_driver=neutron_vpnaas.services.vpn.device_drivers.cisco_ipsec.CiscoCsrIPsecDriver
|
|
# vpn_device_driver=neutron_vpnaas.services.vpn.device_drivers.vyatta_ipsec.VyattaIPSecDriver
|
|
# vpn_device_driver=neutron_vpnaas.services.vpn.device_drivers.strongswan_ipsec.StrongSwanDriver
|
|
# vpn_device_driver=neutron_vpnaas.services.vpn.device_drivers.fedora_strongswan_ipsec.FedoraStrongSwanDriver
|
|
# vpn_device_driver=neutron_vpnaas.services.vpn.device_drivers.libreswan_ipsec.LibreSwanDriver
|
|
# vpn_device_driver=another_driver
|
|
|
|
[ipsec]
|
|
# Status check interval
|
|
# ipsec_status_check_interval=60
|
|
|
|
[strongswan]
|
|
# For fedora use:
|
|
# default_config_area=/usr/share/strongswan/templates/config/strongswan.d
|
|
# Default is for ubuntu use, /etc/strongswan.d
|
|
# default_config_area=/etc/strongswan.d
|