Bug 443495

Summary: strongswan certificate ikev2 connection editor useless due to absence identity field
Product: [Applications] systemsettings Reporter: yP6pxFJmSpO2xZwPW <fuxfwgc4a2i1gr>
Component: kcm_networkmanagementAssignee: Jan Grulich <jgrulich>
Status: REPORTED ---    
Severity: normal CC: jgrulich
Priority: NOR    
Version First Reported In: unspecified   
Target Milestone: ---   
Platform: Manjaro   
OS: Linux   
Latest Commit: Version Fixed/Implemented In:
Sentry Crash Report:
Attachments: compare nm-connection-editor and plasma

Description yP6pxFJmSpO2xZwPW 2021-10-08 20:05:38 UTC
Created attachment 142263 [details]
compare nm-connection-editor and plasma

SUMMARY

Network manage configuration editor dont have critical functionality . Which prevent to use it for configuration IKEV2 vpns. Network manage configuration editor does not have possibility to set Identity field. As a workaround forced every time to use 3rd party application : nm-connection-editor 

STEPS TO REPRODUCE
1. Install fresh Plasma
2. Open network connection editor 
3. Add IkeV2 VPN (strongswan)
4. Configure it for Certificate usage like on attached picture. 

Check in attachment: 
On left side of picture is a windows from nm-connection-editor  where you can see that it is possible to setup identity. 
on right side : kde window for same connection which does not give such possibility. 

OBSERVED RESULT
In most cases your connection will fail because of absence field : identity

EXPECTED RESULT

Have to be possibility to set identity for server and client. 

Please add it and i will pray for your health .

Operating System: Manjaro Linux
KDE Plasma Version: 5.22.5
KDE Frameworks Version: 5.86.0
Qt Version: 5.15.2
Kernel Version: 5.10.68-1-MANJARO (64-bit)
Graphics Platform: X11
Processors: 8 × Intel® Core™ i7-6700K CPU @ 4.00GHz
Memory: 31.3 ГиБ of RAM
Graphics Processor: NVIDIA GeForce GTX 1070/PCIe/SSE2

ADDITIONAL INFORMATION
Comment 1 yP6pxFJmSpO2xZwPW 2022-08-31 09:53:34 UTC
due to this issue. Strongswan connectivity completely broken because if not fill in server identify field than stronswan use resolved ip as authentication identity but in most cases inside gateway certificate used Subject Alt name DNS: domain.name. 
So because of absence identity field for gateways certificate or because applet do not take Subject Alt name from certificate functionality to create vpn using certificates broken completely.