ipsec ike-vpn :500/udp
IPSEC type of Internet Security Association Key Management Protocol (ISAKMP)
Framework for authentication and key exchange. Phases in setting up security association (SA) between endpoints:
Establish secure channel using PreSharedKey (PSK) or certificates. It can use main mode (3 pairs of messages) or aggressive mode.
(optional) Extended AUTH Phase - authenticates the user trying to connect.
Negotiates the parameter for data security using ESP or AH. Can use different algorithm than phase
Connect
Config files
/etc/ipsec.secrets
This file hold shared secrets or RSA private keys for authentication
/etc/ipsec.conf
Install Strongswan
Error fix (while connecting)
Last updated