userdoc:tt_ipsec_vpn_strongswan

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
Next revision Both sides next revision
userdoc:tt_ipsec_vpn_strongswan [2017/01/14 08:27]
droemel
userdoc:tt_ipsec_vpn_strongswan [2020/12/04 14:05]
abelbeck [IPsec VPN (strongSwan) Configuration]
Line 4: Line 4:
  
 The web interface Network tab, "IPsec Peers" and "IPsec Mobile" VPN Types are still supported using [[https://sourceforge.net/projects/ipsec-tools/|ipsec-tools (racoon)]], the "IPsec strongSwan" method is a more feature rich alternative to the other IPsec methods. The web interface Network tab, "IPsec Peers" and "IPsec Mobile" VPN Types are still supported using [[https://sourceforge.net/projects/ipsec-tools/|ipsec-tools (racoon)]], the "IPsec strongSwan" method is a more feature rich alternative to the other IPsec methods.
 +
 +!!Note:!!  The ipsec-tools (racoon) support in AstLinux is **deprecated**, and will be **removed** in the near future. The ipsec-tools project is now abandoned and its source has been lagging behind in adapting to new threats.
  
 Three key strongSwan features not found in ipsec-tools (racoon): Three key strongSwan features not found in ipsec-tools (racoon):
Line 86: Line 88:
     keyingtries=%forever     keyingtries=%forever
  
 +!!Note:!! ''auto=route'' seems to work better with reconnecting, when the other side is down for a while.
 + 
 \\ \\
 **astlinux.example.tld: /etc/ipsec.secrets** **astlinux.example.tld: /etc/ipsec.secrets**
  • userdoc/tt_ipsec_vpn_strongswan.txt
  • Last modified: 2021/03/02 08:11
  • by abelbeck