De Wiki inetshell
Saltar a: navegación, buscar

strongswan en Linux

docker

https://github.com/Stanback/alpine-strongswan-vpn

https://hub.docker.com/r/vimagick/strongswan

https://github.com/kitten/docker-strongswan

https://github.com/GriffinPlus/docker-strongswan

  • ipsec.conf
config setup
    uniqueids=no

conn vpn
    rightauth=psk
    leftauth=psk

    connaddrfamily=ipv4
    right=<local_ip>
    rightid=<local_ip>

    ike=aes256-sha1-modp1024
    esp=aes256-sha1
    keyexchange=ikev2

    ikelifetime=86400s
    keylife=3600s

    left=<remote_ip>
    leftid=<remote_ip>
    leftsubnet=10.0.0.0/8

    auto=start
    type=tunnel

  • ipsec.secrets
# ipsec.secrets - strongSwan IPsec secrets file
<remote_ip> <local_ip> : PSK "SuperSafePassword"