Advertisement
abferm

vyos test tunnel

May 24th, 2016
237
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 1.43 KB | None | 0 0
  1. set interfaces vti vti0 address '192.254.0.1/30'
  2. set vpn ipsec esp-group vyos-pa-esp lifetime '3600'
  3. set vpn ipsec esp-group vyos-pa-esp mode 'tunnel'
  4. set vpn ipsec esp-group vyos-pa-esp pfs 'dh-group2'
  5. set vpn ipsec esp-group vyos-pa-esp proposal 1 encryption 'aes256'
  6. set vpn ipsec esp-group vyos-pa-esp proposal 1 hash 'sha1'
  7. set vpn ipsec ike-group vyos-pa-ike key-exchange 'ikev2'
  8. set vpn ipsec ike-group vyos-pa-ike lifetime '86400'
  9. set vpn ipsec ike-group vyos-pa-ike proposal 1 dh-group '2'
  10. set vpn ipsec ike-group vyos-pa-ike proposal 1 encryption 'aes256'
  11. set vpn ipsec ike-group vyos-pa-ike proposal 1 hash 'sha256'
  12. set vpn ipsec ipsec-interfaces interface 'eth0'
  13. set vpn ipsec site-to-site peer 192.168.0.98 authentication id '192.168.0.183'
  14. set vpn ipsec site-to-site peer 192.168.0.98 authentication mode 'pre-shared-secret'
  15. set vpn ipsec site-to-site peer 192.168.0.98 authentication pre-shared-secret 'thisIsASecret'
  16. set vpn ipsec site-to-site peer 192.168.0.98 authentication remote-id '192.168.0.98'
  17. set vpn ipsec site-to-site peer 192.168.0.98 connection-type 'initiate'
  18. set vpn ipsec site-to-site peer 192.168.0.98 default-esp-group 'vyos-pa-esp'
  19. set vpn ipsec site-to-site peer 192.168.0.98 ike-group 'vyos-pa-ike'
  20. set vpn ipsec site-to-site peer 192.168.0.98 local-address '192.168.0.183'
  21. set vpn ipsec site-to-site peer 192.168.0.98 vti bind 'vti0'
  22. set vpn ipsec site-to-site peer 192.168.0.98 vti esp-group 'vyos-pa-esp'
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement