[Openswan Users] IPSEC windows 2003 and linux openswan 1.0.7

Brad Langhorst brad at langhorst.com
Wed Apr 12 00:30:09 CEST 2006


I saw
Ulf Jakobsson's posting saying that he was able to get 2003 and openswan 
1.x working .


I've tried this series of commands - all i see is "negotiating ip 
security" at the windows command prompt.

What am I missing here?

ipsec static del policy VPN

ipsec static add filterlist name=VPNin
ipsec static add filter filterlist=VPNin srcaddr=192.168.3.0 dstaddr=me 
protocol=ANY mirrored=no srcmask=24 dstmask=32
ipsec static add filteraction name=VPNin inpass=yes action=negotiate 
qmpfs=yes qmsecmethods="ESP[3DES,SHA1]"

ipsec static add filterlist name=VPNout
ipsec static add filter filterlist=VPNout srcaddr=me dstaddr=192.168.3.0 
protocol=ANY mirrored=no srcmask=32 dstmask=24
ipsec static add filteraction name=VPNout inpass=yes action=negotiate 
qmpfs=yes qmsecmethods="ESP[3DES,SHA1]"

ipsec static add policy name=VPN desc="CoopMetrics VPN" 
activatedefaultrule=no assign=yes
ipsec static add rule name=VPNin policy=VPN filterlist=VPNin 
filteraction=VPNin conntype=lan activate=yes rootca="C=US,S=... (removed )"
ipsec static add rule name=VPNout policy=VPN filterlist=VPNout 
filteraction=VPNout tunnel=<openswanserver here> conntype=lan 
activate=yes rootca="C=US,S=... removed"


More information about the Users mailing list