1. Subscriptions
  2. Services
  3. Hardware
  4. Support

ClearFoundation

Community Community Profile Alejandro Perez

About Me

Basic Information

About me
im a user with clarkconnect community, and help some time others withs small questions.

Whereabouts

State / Province
Guatemala
City / Town
Guatemala
Country
Guatemala

Web Links

Connections

2 connections
  • Aaron Bylund
  • Michael Proper
Alejandro Perez
Alejandro Perez
  • Karma
  • Member since
  • Wednesday, 03 March 2010 18:47
  • Last online
  • 5 hours 1 minutes ago
  • Profile views
  • 242 views
Today
Alejandro Perez replied to the topic Re: Ipsec Configuration Phase 2 in the forums.
i will have 4 conn, then im confused where i have to add.

ike=aes256-sha1;modp1024
ikelifetime=28800s
phase2alg=aes256-sha1
keylife=28800s
pfs=no
auto=start

if /etc/conn1.conf

include /etc/ipsec.d/*.conf
----------------------

ipsec.d/ tun01
conn hqnettun01-satnettun01
left=200.6.231.34
leftnexthop=200.6.231.33
leftsubnet=192.168.1.0/255.255.0.0
right=125.1.1.25
rightnexthop=190.242.51.76
rightsubnet=125.1.1.0/255.255.255.0

conn hqgatetun01-satnettun01
left=200.6.231.34
leftnexthop=200.6.231.33
right=125.1.1.25
rightnexthop=190.242.51.76
rightsubnet=125.1.1.0/255.255.255.0

conn hqnettun01-satgatetun01
left=200.6.231.34
leftnexthop=200.6.231.33
leftsubnet=192.168.10.0/255.255.0.0
right=125.1.1.25
rightnexthop=190.242.51.76

conn hqgatetun01-satgatetun01
left=200.6.231.34
leftnexthop=200.6.231.33
right=125.1.1.25
rightnexthop=190.242.51.76

after all of this or before ?

thanks
05:58 AM
Yesterday
Alejandro Perez replied to the topic Re: Ipsec Configuration Phase 2 in the forums.
those are the conf i need to setup, now im newie at ipsec worrld and openswan, then my question is.

where i have to insert those configuration.

/etc/ipsec.con
or /etc/ipsec.d/myconn.conf

thanks Nick

rekey=yes
keyingtries=5
keyexchange=ike
ike=modp1024
ikelifetime=28800s
phase2=esp
phase2alg=aes256-sha1
keylife=28800s
pfs=no
auto=start
09:57 AM
4 days ago
Alejandro Perez replied to the topic Re: Ipsec Configuration Phase 2 in the forums. 07:56 AM
5 days ago
Alejandro Perez replied to the topic Re: Ipsec Configuration Phase 2 in the forums.
the other point is ASA 5540 hw.

regards
12:50 PM
Alejandro Perez created a new topic Ipsec Configuration Phase 2 in the forums.
Hi every body, im trying to configure Ipsec Vpn with the configuration above,

Negotiation = aggresive mode
Diffie-Hellman-Group= G2 (1024bit)
Renegotiation IKE - seconds 28000
Ike retransmision

Phase2
SHA/Hmac-160
Encryption Algoritm AES256
Renegotiation IKE - 28000s

im Using ClearOS 5.2
Linux Openswan U2.6.21/K2.6.18-308.1.1.v5PAE (netkey)

got /etc/ipsec.conf
and /etc/ipsec.d/ipsec.tunn1.conf

then let me know if someone know the syntax and how to configure

thanks by advance
09:14 AM
1 week ago
Aaron Bylund and Paulo Azevedo are now connections May 14
2 weeks ago
Aaron Bylund and Gio are now connections May 07
Aaron Bylund and Ozz are now connections May 06
Aaron Bylund and Leon are now connections May 05

Wall

No wall post to show

My Forum Updates

Groups

Here is a short listing of the groups that the user has registered in.