[strongSwan] ipsec policy?

Andreas Steffen andreas.steffen at strongswan.org
Tue May 10 09:00:09 CEST 2011


Just set up an IPsec tunnel between Net1 and the server:

ipsec.conf of the Net1 gateway:

conn net1-server
     left=<IP of Net1 gateway>
     leftsubnet=<Net1>
     leftcert=net1gwCert.pem
     right=<IP of server>
     rightid=<ID of server>
     auto=start

ipsec.conf on the server

conn server-net1
     left=<IP of server>
     leftcert=serverCert.pem
     right=<IP of Net1 gateway>
     rightsubnet=<Net1>
     rightid=<ID of Net1 gateway>
     auto=add

Regards

Andreas

On 10.05.2011 08:24, Nguyễn Hoàng Anh wrote:
> Hi all Strongswan users!
> 
> I have two networks (Net1, Net2)  working with one Server, now I want
> using Strongswan to setup a ipsec tunnel between Net1 and Server and I
> also want Net2 still working with Server without Ipsec.  How can I done
> that?
> 
> Many thanks!
> 
> 
> 
> 
> 
> -- 
> |-------------------------------------------------------------|
> Vietnam Information Security Evaluation Center (VISEC)                 
>           
> Member of Vietnam Government Information Security Commission (VGISC) 
> Nguyen Hoang Anh
> IS Evaluating Department
> IS Evaluator
> Addr: 105 Nguyen Chi Thanh .st Dong Da .dist Hanoi capital             
>     
> Mobile: +84 985-578-882                                                   
> URL:http://www.visec.info             
> |-------------------------------------------------------------|

======================================================================
Andreas Steffen                         andreas.steffen at strongswan.org
strongSwan - the Linux VPN Solution!                www.strongswan.org
Institute for Internet Technologies and Applications
University of Applied Sciences Rapperswil
CH-8640 Rapperswil (Switzerland)
===========================================================[ITA-HSR]==




More information about the Users mailing list