21.07.2020 11:43, Stuart Henderson пишет:
most endpoints cope wigh slightly less terrible crypto, you can try
something like
ike passive esp transport \
proto udp from my.external.ip to any port 1701 \
main auth "hmac-sha1" enc "aes-256" group modp2048 \
quick auth
On 2020-07-20, kasak wrote:
> Hello misc.
> Recently, i needed to setup l2tp-ipsec for some ip phones to reach my
> network.
>
> so, the l2tp part is not trouble at all with npppd, but, the ipsec part
> is harder to understand.
>
> after reading ipsec and ipsec.conf man,
>
> i tryed to add just
Hello misc.
Recently, i needed to setup l2tp-ipsec for some ip phones to reach my
network.
so, the l2tp part is not trouble at all with npppd, but, the ipsec part
is harder to understand.
after reading ipsec and ipsec.conf man,
i tryed to add just one line:
ike passive from my.ga.te.ip to
Hello,
I configured an IPSec tunnel with ipssecctl and ipsec.conf.
The default interface of the gateway is 219.17.10.1.
The other gateway runs Checkpoint.
Here is a part of my ipsec.conf :
ike active esp from 192.168.36.0/24 to 10.128.203.0/24 \
peer 161.144.27.32 \
main auth
I've got some basic tuneling working using ipsec, and I'm trying to make it
a bit more robuts. Here's what works:
Machine A:
ike esp from 192.168.1.0/24 to 192.168.9.0/24 peer XX.92.176.37
ike esp from XX.92.176.33 to 192.168.9.0/24 peer XX.92.176.37
ike esp from XX.92.176.33 to XX.92.176.37
yes, you can. You need to encrypt traffic from/to your laptop to
0.0.0.0/0. So instead of using your gw address, use 0.0.0.0/0.
HJ.
On Thu, Dec 01, 2005 at 08:00:38AM +0100, raff wrote:
Hi,
I have wireless connection between my machine and router/gateway.
I can set up ipsec connection
Hi,
I have wireless connection between my machine and router/gateway.
I can set up ipsec connection betwen them if i'm connecting directly to
gw machine, but is it possible to encrypt traffic between those when i'm
connecting to internet via gw ?
host--gw--internet
| |
'---|---'
ipsec
7 matches
Mail list logo