LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 07-30-2010, 07:27 AM   #1
ALMAM
LQ Newbie
 
Registered: Jul 2005
Posts: 12

Rep: Reputation: 0
Help configuring VPN using ipsec-tools


Hi Folks, greetings!


We have the following situation:

LAN A 192.168.13.0/24
Gateway LAN A Interfaces:
Internal: 192.168.13.20
External: 192.168.7.21

LAN B 192.168.56.0/24
Gateway LAN B Interfaces:
Internal: 192.168.56.101
External: 192.168.7.18

Behind LAN B, there's also LAN C (10.20.30.0/24 - internal gateway is 10.20.30.2) and we do need to have LAN A connecting to LAN C

On LAN A gateway I have created the following interfaces:

ifcfg-LANAB
DSTNET=192.168.56.0/24
DSTGW=192.168.56.101
SRCNET=192.168.13.0/24
SRCGW=192.168.13.20
DST=192.168.7.18
TYPE=IPSEC
ONBOOT=yes
IKE_METHOD=PSK
IKE_PSK=JustAKey

ifcfg-LANAC
DSTNET=10.20.30.0/24
DSTGW=10.20.30.2
SRCNET=192.168.13.0/24
SRCGW=192.168.13.20
DST=192.168.7.18
TYPE=IPSEC
ONBOOT=yes
IKE_METHOD=PSK
IKE_PSK=JustAKey

On LAN B gateway the interfaces:

ifcfg-LANBA
DSTNET=192.168.13.0/24
DSTGW=192.168.13.20
SRCNET=192.168.56.0/24
SRCGW=192.168.56.101
DST=192.168.7.21
TYPE=IPSEC
ONBOOT=yes
IKE_METHOD=PSK
IKE_PSK=JustAKey

ifcfg-LANCA
DSTNET=192.168.13.0/24
DSTGW=192.168.13.20
SRCNET=10.20.30.0/24
SRCGW=10.20.30.2
DST=192.168.7.21
TYPE=IPSEC
ONBOOT=yes
IKE_METHOD=PSK
IKE_PSK=JustAKey

Versions:
Kernel 2.6.18
ipsec-tools 0.6.5
openssl 0.9.8e


Is that correct? Do I need to edit the setkey.conf with the rules for the tunnel?


Thanks in advance.

Regards,

AL
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
vpn-ipsec : Failed to parse config setup portion of ipsec.conf hari85 Linux - Newbie 1 07-17-2010 08:12 PM
[SOLVED] Configuring IPSec VPN on Cisco IOS nico34 Linux - Networking 0 01-13-2010 11:35 AM
SSL/TLS VPN VS IPSec VPN Peter_APIIT Linux - Security 2 11-13-2008 11:06 PM
Dynamic IP VPN between IpSec(OpenBSD) and Linux VPN software Peter_APIIT Linux - Server 2 04-09-2008 05:08 AM
Help configuring ipsec VPN twsnnva Linux - Networking 4 03-05-2005 05:09 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 06:56 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration