<div dir="ltr"><img width="0" height="0" class="mailtrack-img" alt="" style="display:flex" src="https://mailtrack.io/trace/mail/15b972211ff7ca5ee705dcb6cc8dd2ac79d8a4fb.png?u=94874"><div dir="ltr"><div></div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif;font-size:small">Hi friends,</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif;font-size:small"><br></div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif;font-size:small">Since 3 weeks am trying to setup a VPN tunnel from my AWS instance to a partener Cisco ASA 5585 equipment, with no luck.</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif;font-size:small"><br></div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif;font-size:small">Can you please suggest the best config for my ipsec.conf file? Here is the VPN form:</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif;font-size:small"><br></div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif;font-size:small"><div><img src="cid:ii_jn9tb0vn0" alt="image.png" width="542" height="479"><br></div></div><div><div dir="ltr" class="gmail_signature"><div class="gmail_default" style="font-family:arial,helvetica,sans-serif;font-size:small">Here is mine. Where am I wrong please?</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif;font-size:small"><br></div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">conn thePartnet</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        keyexchange=ikev1</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        leftfirewall=yes</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        ikelifetime=86400s</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        keylife=28800s</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        lifetime=28800s</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        rekeymargin=3m</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        keyingtries=3</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        authby=secret</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        type=tunnel</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        left=my.local.ip</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        leftid = my.public.ip</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        leftsubnet=my.local.subnet</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        leftauth=psk</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        right=the.remote.ip</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        rightid=the.remote.ip</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        rightsubnet=the.remote.subnet</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        rightauth=psk</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        ike=aes256-sha1-modp1024</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        esp=aes256-sha1-modp1024!</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        closeaction=restart</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif">        lifebytes = 4608000</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif;font-size:small">        auto=start</div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif;font-size:small"><br></div><div class="gmail_default" style="font-family:arial,helvetica,sans-serif;font-size:small">Many thanks</div><br>------<br><font color="#666666">loyc Cossou</font></div></div><br></div><br><div class="mt-signature">
        <table border="0" cellpadding="8" cellspacing="0" style="user-select: none;">
            <tbody><tr>
                <td>
                    <a href="https://mailtrack.io?utm_source=gmail&utm_medium=signature&utm_campaign=signaturevirality6&" class="" style="text-decoration:none">
                        <img src="https://s3.amazonaws.com/mailtrack-signature/sender_notified.gif" alt="Mailtrack" class="" width="32" height="32">
                    </a>
                </td>
                <td>
                    <span style="color:#777">Sender notified by</span> <br>
                    <a href="https://mailtrack.io?utm_source=gmail&utm_medium=signature&utm_campaign=signaturevirality6&" class="mt-install" style="color:#4374f7">Mailtrack</a>
                    <span style="color:transparent;font-size:0">15/10/18 à 05:46:50</span>
                </td>
                <td>
                    
                </td>
            </tr>
        </tbody></table>
    </div></div>