OPENSWAN XAUTH

Aus xinux.net
Zur Navigation springen Zur Suche springen

xauth with psk and pam

create user with useradd -m <user> and password <user>

/etc/ipsec.conf

conn xauthserver
       left=%defaultroute
       authby=secret
       leftxauthserver=yes
       leftmodecfgserver=yes
       leftsubnet=0.0.0.0/0
       right=%any
       rightxauthclient=yes
       rightmodecfgclient=yes
       rekey=yes
       modecfgpull=yes
       modecfgdns1=192.168.240.200
       auto=add
       pfs=no

/etc/ipsec.secrets

0.0.0.0 88.88.88.88   : PSK "passwd"