Ubuntu strongswan-nm plugin doesn't configure IPv6
I realize this is not officially the strongswan project but I was happy to see the latest strongswan get pushed to Ubuntu 18 tonight until I tested it again and apparently the network manager plugin is still not configuring strongswan to ask for an IPv6 IP/route so I get an IPv4 tunnel and IPv6 still is wide open and being routed over my ISP. Thought id' at least raise it here before finding a better place to open a ticket.
Happy new year.
#3 Updated by James Dogopoulos almost 2 years ago
Just wanted to mention this is not just an issue for ipv6-only vpns like the Feature request says, it could lead people to think the VPN is working and they are secured when really if dns resolves to an ipv6 host on the other end the traffic could over an un-encrypted connection potentially exposing data without the user even being aware.
#4 Updated by James Dogopoulos almost 2 years ago
Actually now that I think about it again, might want to change this to a bug instead of feature since it has security implications because the IPv6 connectivity remains active on a dual stack host and data could be exposed over IPv6 without the user realizing it.