Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

[Users] RoadWarrior Setup between Win2K and Freeswan 1.91 with X509 Certi ficates

From: Mark Smith <msmith(at)Atronic.com.au>
Date: Sun Apr 27 2003 - 18:43:48 EDT


Hello All,    

I am having some trouble setting up a Roadwarrior connection between Win2K and Freeswan 1.91. I currently have a VPN Tunnel between our two offices using Preshared Keys, and this works fine.  

My Ipsec.conf looks like this.

config setup
 interfaces="ipsec0=eth2 ipsec1=eth1"
 forwardcontrol=no
 klipsdebug=none
 plutodebug=none
 manualstart=
 plutoload=de2au mob2au-net
 plutostart=de2au
 plutowait=yes  

conn de2au
 type=tunnel
 left=100.100.100.25
 leftnexthop=100.100.100.26
 leftsubnet=10.0.0.0/8
 right=200.200.200.25
 rightnexthop=200.200.200.26
 rightsubnet=10.3.0.0/22
 spibase=0x200
 esp=3des-md5-96
 espenckey=0x06a75959_5c960e01_e89c234_ETC ETC  espauthkey=0x06a75959_5c960e01_e89c234_ETC ETC  keyexchange=ike
 keylife=8h
 keyingtries=0  

conn mob2au-net
 keyingtries=1
 compress=yes
 pfs=yes
 auto=add
 authby=rsasig
 leftrsasigkey=%cert
 rightrsasigkey=%cert
 rightcert=host.pem
 left=0.0.0.0
 right=100.100.100.25
 rightnexthop=100.100.100.26
 rightsubnet=10.3.0.0/22  

and my Ipsec.Secrets File looks like this  

100.100.100.25 200.200.200.25 "0x565784757c_465e38575_96655e54_Etc Etc"

Do you need help?X

with the Usual RSA key stuff from the x509 certificates embedded in the file as well. Can anyone see why I cannot get my roadwarrior too work, or even help me with the Ipsec.conf files for both the Roadwarrior and the Gateway, as I think that is where I am having trouble. All the certificates are working and have been imported correctly in to my Win2k clients.    

Any help would be appreciated    

Regards    

Mark Smith



Users mailing list
Users@lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users Received on Sun Apr 27 20:28:21 2003

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 13:01:28 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library