[Openswan Users] openswan VPN between OpenSWAN and a client vpn

santi santi santi santi-ti at hotmail.com
Mon Apr 27 11:09:24 EDT 2009






 

 

Hi

 

This
problem with Openswan version U2.4.9/K2.6.24-24-generic.

 

You can
help my?

 

This is
configuration:

 

Client vpn
(Shrew Soft vpn)------------my router (ip wan 80.25.x.x)(ip LAN 172.16.0.1) NAT
UDP port 500, 4500 and 1701 – ip 172.16.0.10 (server ipsec)--------SERVER
IPSEC, two interfaces eth1 172.16.0.10 is the interfaces ipsec0 and eth0 192.168.0.188.

 

 

This is my
file configuration ipsec:

 

version 2.0

 

config
setup

               
forwardcontrol=yes

               
interfaces="ipsec0=eth1"

               
nat_traversal=yes

               
virtual_private=%v4:10.0.0.0/8,%v4:172.16.0.0/24,%v4:192.168.0.0/16

 

conn tunel

               
auth=esp

               
authby=secret

               
auto=add

               
compress=no

               
dpdaction=clear

               
dpddelay=30

               
dpdtimeout=120

               
esp=aes128-sha1

               
ike=aes128-sha

               
ikelifetime=60m

               
keyingtries=3

               
keylife=20m

               
left=172.16.0.10

               
leftsubnet=172.16.0.0/24

               
leftnexthop=172.16.0.1

               
pfs=no

               
rekeymargin=3m

               
right=%any

               
rightsubnet=172.16.0.15/24

               
type=tunnel 

 

conn block

               
auto=ignore

 

conn
private

               
auto=ignore

 

conn
private-or-clear

               
auto=ignore

 

conn
clear-or-private

               
auto=ignore

 

conn clear

               
auto=ignore

 

conn
packetdefault

               
auto=ignore

#Disable
Opportunistic Encryption

include
/etc/ipsec.d/examples/no_oe.conf

 

And
configuration ipsec.secrets

 



 #: PSK
"vpnama2009"

 

80.25.x.x
%any: PSK "mykeysvpn"

 

172.16.0.10
%any: PSK "mykeysvpn"

: PSK
"mykeysvpn"

 

You can
help my configuration????

 

I don´t
connect witch my server ipsec from the client vpn…
Thanks!!




_________________________________________________________________
¿Quieres que tus hijos naveguen seguros? Aprende aquí cómo con Protección Infantil
http://www.protegeatushijos.com
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20090427/242444ca/attachment-0001.html 


More information about the Users mailing list