[strongSwan] Strongswan and Cisco ASA 5585x

Loyc Cossou loycossou at gmail.com
Mon Oct 15 06:47:30 CEST 2018


Hi friends,

Since 3 weeks am trying to setup a VPN tunnel from my AWS instance to a
partener Cisco ASA 5585 equipment, with no luck.

Can you please suggest the best config for my ipsec.conf file? Here is the
VPN form:

[image: image.png]
Here is mine. Where am I wrong please?

conn thePartnet
        keyexchange=ikev1
        leftfirewall=yes
        ikelifetime=86400s
        keylife=28800s
        lifetime=28800s
        rekeymargin=3m
        keyingtries=3
        authby=secret
        type=tunnel
        left=my.local.ip
        leftid = my.public.ip
        leftsubnet=my.local.subnet
        leftauth=psk
        right=the.remote.ip
        rightid=the.remote.ip
        rightsubnet=the.remote.subnet
        rightauth=psk
        ike=aes256-sha1-modp1024
        esp=aes256-sha1-modp1024!
        closeaction=restart
        lifebytes = 4608000
        auto=start

Many thanks

------
loyc Cossou


[image: Mailtrack]
<https://mailtrack.io?utm_source=gmail&utm_medium=signature&utm_campaign=signaturevirality6&>
Sender
notified by
Mailtrack
<https://mailtrack.io?utm_source=gmail&utm_medium=signature&utm_campaign=signaturevirality6&>
15/10/18
à 05:46:50
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20181015/805be312/attachment-0001.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: image.png
Type: image/png
Size: 292920 bytes
Desc: not available
URL: <http://lists.strongswan.org/pipermail/users/attachments/20181015/805be312/attachment-0002.png>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: trois.png
Type: image/png
Size: 49081 bytes
Desc: not available
URL: <http://lists.strongswan.org/pipermail/users/attachments/20181015/805be312/attachment-0003.png>


More information about the Users mailing list