[Openswan Users] config to talk to device with aes, sha, psk

Peter McGill petermcgill at goco.net
Fri Jan 6 11:26:43 CET 2006


Try adding the following three lines to your conn as follows:
Otherwise your setup looks good from what I can tell.
the pfs line obviously turns off pfs.
the ike line is for phase 1
the esp line is for phase 2

conn host178
   pfs=no
   ike=aes256-sha1
   esp=aes256-sha1


Peter McGill
Software Developer / Network Administrator
Gra Ham Energy Limited


More information about the Users mailing list