strongSwan VPN клієнтstrongSwanПерегляд журналуПошукVPN не підтримуетьсяВаш пристрій не підтримує VPN.\nЗв\'яжіться з виробником.VPN connections are not supported if a built-in VPN has the always-on feature enabled.Unable to get permission to create VPN connections. Either because it was denied by the user, or because a different VPN app has the always-on feature enabled.Завантаження…Профіль не знайденоstrongSwan посиланняVPN connection stateProvides information about the VPN connection state and serves as permanent notification to keep the VPN service running in the background.SettingsDefault VPN profileConnect to most recently used profileIgnore battery optimizationsDon\'t show a warning if the app is not on the device\'s power whitelistЖурналВідправити файл журналуЖурнал порожнійstrongSwan %1$s файл журналуНемає VPN профілівДодати VPN профільРедагуватиCopy%1$s (Copy)ВидалитиОбрати профільОбрані профілі видаленоПрофіль не обраноОдин профіль обрано%1$d профілів обраноЗберегтиImportВідмінаНазва профілю (необов\'язковий)Назва профілюDefaults to the configured serverDefaults to \"%1$s\"СерверIP address or hostname of the VPN serverVPN ТипЛогінПароль (необов\'язковий)Leave blank to get prompted on demandСертифікат користувачаВиберіть сертифікат користувачаВибрати спеціальний сертифікат користувачаСертифікат CAВибрати автоматичноВибрати сертифікат CAВибрати спеціальний сертифікат CAAdvanced settingsShow advanced settingsServer identityDefaults to the configured server. Custom values are explicitly sent to the server and enforced during authenticationDefaults to \"%1$s\". Custom values are explicitly sent to the server and enforced during authenticationClient identityDefaults to the configured username. Custom values may be used if expected/required by the serverDefaults to the certificate\'s subject identity. Custom values may be used if expected/required by the server. Note that these usually must be confirmed by the certificate (auto-completion is provided for the certificate\'s alternative identities, if any)DNS serversCustom DNS servers to use when connected to the VPN (separated by spaces, e.g. \"8.8.8.8 2001:4860:4860::8888\"), defaults to those received from the VPN serverMTU of the VPN tunnel deviceIn case the default value is unsuitable for a particular networkServer portUDP port to connect to, if different from the defaultNAT-T keepalive intervalSmall packets are sent to keep mappings on NAT routers alive if there is no other traffic. In order to save energy the default interval is 45 seconds. Behind NAT routers that remove mappings early this might be too high, try 20 seconds or less in that case.Send certificate requestsCertificate requests are sent for all available or selected CA certificates. To reduce the size of the IKE_AUTH message this can be disabled. However, this only works if the server sends its certificate even if it didn\'t receive any certificate requests.Use OCSP to check certificateUse the Online Certificate Status Protocol (OCSP), if available, to check that the server certificate has not been revoked.Use CRLs to check certificateUse Certificate Revocation Lists (CRL), if available, to check that the server certificate has not been revoked. CRLs are only used if OCSP doesn\'t yield a result.Use strict revocation checkingIn strict mode the authentication will fail not only if the server certificate has been revoked but also if its status is unknown (e.g. because OCSP failed and no valid CRL was available).Use RSA/PSS signaturesUse the stronger PSS encoding instead of the classic PKCS#1 encoding for RSA signatures. Authentication will fail if the server does not support such signatures.Split tunnelingBy default, the client will route all network traffic through the VPN, unless the server narrows the subnets when the connection is established, in which case only traffic the server allows will be routed via VPN (by default, all other traffic is routed as if there was no VPN).Block IPv4 traffic not destined for the VPNBlock IPv6 traffic not destined for the VPNCustom subnetsOnly route traffic to specific subnets via VPN, everything else is routed as if there was no VPN (separated by spaces, e.g. \"192.168.1.0/24 2001:db8::/64\")Excluded subnetsTraffic to these subnets will not be routed via VPN, but as if there was no VPN (separated by spaces, e.g. \"192.168.1.0/24 2001:db8::/64\")ApplicationsSelect applicationsNo applications selectedOne application selected%1$d applications selectedAlgorithmsOptionally configure specific algorithms to use for IKEv2 and/or IPsec/ESP instead of the defaults. Refer to our wiki for a list of algorithm identifiers (note that not all are supported by this app). Both fields take a list of algorithms, each separated by a hyphen.IKEv2 AlgorithmsFor non-AEAD/classic encryption algorithms, an integrity algorithm, a pseudo random function (optional, defaults to one based on the integrity algorithm) and a Diffie-Hellman group are required (e.g. aes256-sha256-ecp256). For combined-mode/AEAD algorithms, the integrity algorithm is omitted but a PRF is required (e.g. aes256gcm16-prfsha256-ecp256).IPsec/ESP AlgorithmsFor non-AEAD/classic encryption algorithms, an integrity algorithm is required, a Diffie-Hellman group is optional (e.g. aes256-sha256 or aes256-sha256-ecp256). For combined-mode/AEAD algorithms, the integrity algorithm is omitted (e.g. aes256gcm16 or aes256gcm16-ecp256). If a DH group is specified IPsec SA rekeying will use a DH key exchange. However, DH groups specified here are not used when the connection is established initially because the keys there are derived from the IKE SA key material. Therefore, any configuration mismatch with the server will only cause errors later during rekeying.Import VPN profileFailed to import VPN profileFailed to import VPN profile: %1$sFile not foundHost unknownTLS handshake failedInvalid value in \"%1$s\"This VPN profile already exists, its current settings will be replaced.Import certificate from VPN profileCertificate for \"%1$s\"Profile IDA value is required to initiate the connectionВведіть ім\'я користувача Не вибрано сертифікат CAБудь ласка виберіть один Вибрати автоматичноPlease enter a number in the range from %1$d - %2$dPlease enter valid subnets and/or IP addresses, separated by spacesPlease enter valid IP addresses, separated by spacesPlease enter a valid list of algorithms, separated by hyphensEAP-TNC may affect your privacyDevice data is sent to the server operatorTrusted Network Connect (TNC) allows server operators to assess the health of a client device.
For that purpose the server operator may request data such as a unique identifier, a list of installed packages, system settings, or cryptographic checksums of files.
Any data will be sent only after verifying the server\'s identity.]]>Сертифікати CAНемає сертифікатівПерезавантажити CA сертифікатиСистемаКористувачImportedDelete certificate?The certificate will be permanently removed!Import certificateCertificate successfully importedFailed to import certificateCRL cacheClear CRL cache?The CRL cache is emptyThe CRL cache contains %1$d file (%2$s).The CRL cache contains %1$d files (%2$s).ClearСтатус:Профіль:Роз\'єднатиПідключення…ПідключенийРоз\'єднання…Немає активних VPNПомилкаDismissAssessment:RestrictedFailedView remediation instructionsRemediation instructionsВведіть пароль для з\'єднанняЛогінПарольПідключитиПомилка підлючення VPN: %1$s.Помилка пошуку адреси серверСервер зв\'язку зі шлюзомПомилка перевірки данних аутентифікації серверПомилка аутентифікації користувачаSecurity assessment failedНевідома помилка під час підключенняPassword unavailableClient certificate unavailableVPN підключеноЦей VPN профіль зараз підключений!ПерепідключитисяПідключити %1$s?Ця дія замінить ваше поточне VPN з\'єднання!Disconnect VPN?This will disconnect the active VPN connection!ПідключитиRetryRetry in %1$d secondRetry in %1$d secondsCancel retryDisable battery optimizationsPlease confirm the next dialog to add the app to the device\'s power whitelist so it can ignore battery optimizations and schedule NAT keep-alives and rekeyings accurately in order to constantly keep reachable while the VPN is established.Toggle VPNConnect VPNDisconnect VPN