strongswan4.4.0 on ubuntu14.04
来源:互联网 发布:网络调研问卷 编辑:程序博客网 时间:2024/05/13 14:09
strongswan4.4.0 on ubuntu14.04
10.1.1.242<----------->10.1.1.243
Host1: 10.1.1.242
cat /etc/strongswan.conf
charon {
reuse_ikesa=no
install_routes=no
block_threshold=50
cookie_threshold=100
}
cat /etc/ipsec.conf
# ipsec.conf - strongSwan IPsec configuration file
# basic configuration
config setup
charonstart=yes
plutostart=no
uniqueids=no
charondebug="knl 0,enc 0,net 0"
conn %default
auto=route
keyexchange=ikev2
reauth=no
conn r1~v1
rekeymargin=30
rekeyfuzz=100%
left=10.1.1.242
right=10.1.1.243
leftsubnet=10.1.1.0/24
rightsubnet=10.1.1.0/24
leftprotoport=1
rightprotoport=1
authby=secret
leftid=10.1.1.242
rightid=%any
ike=3des-sha1-modp768!
esp=3des-md5!
type=tunnel
ikelifetime=600s
keylife=300s
mobike=no
auto=route
reauth=no
cat /etc/ipsec.secrets
%vr-0 10.1.1.242 10.1.1.243 : PSK "test"
Host2: 10.1.1.243
cat /etc/strongswan.conf
charon {
reuse_ikesa=no
install_routes=no
}
cat /etc/ipsec.conf
# ipsec.conf - strongSwan IPsec configuration file
# basic configuration
config setup
charonstart=yes
plutostart=no
uniqueids=no
charondebug="knl 0,enc 0,net 0"
conn %default
auto=route
keyexchange=ikev2
reauth=no
conn r1~v1
rekeymargin=30
rekeyfuzz=100%
left=10.1.1.243
right=10.1.1.242
leftsubnet=10.1.1.0/24
rightsubnet=10.1.1.0/24
leftprotoport=1
rightprotoport=1
authby=secret
leftid=10.1.1.243
rightid=%any
ike=3des-sha1-modp768!
esp=3des-md5!
type=tunnel
ikelifetime=600s
keylife=300s
dpdaction=clear
dpddelay=20
mobike=no
auto=route
reauth=no
cat /etc/ipsec.secrets
%vr-0 10.1.1.243 10.1.1.242 : PSK "test"
After configuring the 2 hosts, run "ipsec stop && ipsec start".
10.1.1.242<----------->10.1.1.243
Host1: 10.1.1.242
cat /etc/strongswan.conf
charon {
reuse_ikesa=no
install_routes=no
block_threshold=50
cookie_threshold=100
}
cat /etc/ipsec.conf
# ipsec.conf - strongSwan IPsec configuration file
# basic configuration
config setup
charonstart=yes
plutostart=no
uniqueids=no
charondebug="knl 0,enc 0,net 0"
conn %default
auto=route
keyexchange=ikev2
reauth=no
conn r1~v1
rekeymargin=30
rekeyfuzz=100%
left=10.1.1.242
right=10.1.1.243
leftsubnet=10.1.1.0/24
rightsubnet=10.1.1.0/24
leftprotoport=1
rightprotoport=1
authby=secret
leftid=10.1.1.242
rightid=%any
ike=3des-sha1-modp768!
esp=3des-md5!
type=tunnel
ikelifetime=600s
keylife=300s
mobike=no
auto=route
reauth=no
cat /etc/ipsec.secrets
%vr-0 10.1.1.242 10.1.1.243 : PSK "test"
Host2: 10.1.1.243
cat /etc/strongswan.conf
charon {
reuse_ikesa=no
install_routes=no
}
cat /etc/ipsec.conf
# ipsec.conf - strongSwan IPsec configuration file
# basic configuration
config setup
charonstart=yes
plutostart=no
uniqueids=no
charondebug="knl 0,enc 0,net 0"
conn %default
auto=route
keyexchange=ikev2
reauth=no
conn r1~v1
rekeymargin=30
rekeyfuzz=100%
left=10.1.1.243
right=10.1.1.242
leftsubnet=10.1.1.0/24
rightsubnet=10.1.1.0/24
leftprotoport=1
rightprotoport=1
authby=secret
leftid=10.1.1.243
rightid=%any
ike=3des-sha1-modp768!
esp=3des-md5!
type=tunnel
ikelifetime=600s
keylife=300s
dpdaction=clear
dpddelay=20
mobike=no
auto=route
reauth=no
cat /etc/ipsec.secrets
%vr-0 10.1.1.243 10.1.1.242 : PSK "test"
After configuring the 2 hosts, run "ipsec stop && ipsec start".
0 0
- strongswan4.4.0 on ubuntu14.04
- FFMpeg2.4.2 on Ubuntu14.04
- ipsec/racoon on ubuntu14.04
- ubuntu14.04 ruby on rails
- OBS Build on ubuntu14.04
- mysql installation on ubuntu14.04
- Condor and Pegasus on ubuntu14.04
- ubuntu14.04安装ruby on rails
- 1. ipsec-tools on ubuntu14.04
- 2. ipsec-tools on ubuntu14.04
- 3. ipsec-tools on ubuntu14.04
- 4. ipsec-tools on ubuntu14.04
- How to Install Matlab on Ubuntu14.04
- How to Install Caffe on Ubuntu14.04
- strongswan4.3.6 整体框架
- ubuntu14.04 adding swap on /dev/mapper 停住不动
- uwsgi+web.py+nginx on Ubuntu14.04 LTS
- Ubuntu14.04上搭建ruby on rails 环境全过程
- 什么是 FOUC(无样式内容闪烁)?你如何来避免 FOUC?
- c语言注释规范
- WPS(Wi-Fi Protected Setup),Wi-Fi保护设置
- 如何快速正确的安装 Ruby, Rails 运行环境 Cocoapods安装配置环境。
- 正则表达式
- strongswan4.4.0 on ubuntu14.04
- Java HashMap的工作原理
- 自定义GLSurfaceView在layout文件中挂掉的原因
- 我们都在带着伤口奔跑
- iframe标签用法详解(属性、透明、自适应高度)
- javascript中的eval函数
- python datetime 模块
- hadoop集群配置Ganglia监控
- 【c++学习】重温指针