Strongswan-bintec-psk

Aus xinux.net
Zur Navigation springen Zur Suche springen

Openswan

  • /etc/ipsec.conf
conn b2s
     authby=psk
     keyexchange=ikev1
     left=192.168.252.89
     leftid=@tiazel
     leftsubnet=10.254.32.0/24
     right=192.168.252.122
     rightid=@bintec
     rightsubnet=10.254.34.0/24
     ikelifetime=14400
     keylife=7200
     closeaction=clear
     dpdaction=none
     ike=aes256-md5-modp1536
     esp=aes256-md5-modp1536
     auto=start
     rekeymargin=3m
     keyingtries=3
  • /etc/ipsec.secret
@bintec @tiazel  : PSK "suxer"

Bintec

IKE and IPSEC Config

Peer

  • VPN
    • IPSec
      • IPSec Peers
        • New

Sophos-bintec-psk12.png