Advertisement
Guest User

Untitled

a guest
Jun 25th, 2019
64
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 3.09 KB | None | 0 0
  1. # ip x s ls
  2.  
  3. # ip x p ls
  4. src 10.120.0.36/30 dst 172.36.0.0/22
  5. dir out priority 1040873 ptype main
  6. tmpl src 0.0.0.0 dst 0.0.0.0
  7. proto esp reqid 0 mode transport
  8. src ::/0 dst ::/0
  9. socket out priority 0 ptype main
  10. src ::/0 dst ::/0
  11. socket in priority 0 ptype main
  12. src 0.0.0.0/0 dst 0.0.0.0/0
  13. socket out priority 0 ptype main
  14. src 0.0.0.0/0 dst 0.0.0.0/0
  15. socket in priority 0 ptype main
  16. src 0.0.0.0/0 dst 0.0.0.0/0
  17. socket out priority 0 ptype main
  18. src 0.0.0.0/0 dst 0.0.0.0/0
  19. socket in priority 0 ptype main
  20. src 0.0.0.0/0 dst 0.0.0.0/0
  21. socket out priority 0 ptype main
  22. src 0.0.0.0/0 dst 0.0.0.0/0
  23. socket in priority 0 ptype main
  24. src 0.0.0.0/0 dst 0.0.0.0/0
  25. socket out priority 0 ptype main
  26. src 0.0.0.0/0 dst 0.0.0.0/0
  27. socket in priority 0 ptype main
  28. src 0.0.0.0/0 dst 0.0.0.0/0
  29. socket out priority 0 ptype main
  30. src 0.0.0.0/0 dst 0.0.0.0/0
  31. socket in priority 0 ptype main
  32. src 0.0.0.0/0 dst 0.0.0.0/0
  33. socket out priority 0 ptype main
  34. src 0.0.0.0/0 dst 0.0.0.0/0
  35. socket in priority 0 ptype main
  36. src 0.0.0.0/0 dst 0.0.0.0/0
  37. socket out priority 0 ptype main
  38. src 0.0.0.0/0 dst 0.0.0.0/0
  39. socket in priority 0 ptype main
  40. src 0.0.0.0/0 dst 0.0.0.0/0
  41. socket out priority 0 ptype main
  42. src 0.0.0.0/0 dst 0.0.0.0/0
  43. socket in priority 0 ptype main
  44. src 0.0.0.0/0 dst 0.0.0.0/0
  45. socket out priority 0 ptype main
  46. src 0.0.0.0/0 dst 0.0.0.0/0
  47. socket in priority 0 ptype main
  48. src 0.0.0.0/0 dst 0.0.0.0/0
  49. socket out priority 0 ptype main
  50. src 0.0.0.0/0 dst 0.0.0.0/0
  51. socket in priority 0 ptype main
  52. src ::/0 dst ::/0 proto ipv6-icmp type 135
  53. dir out priority 1 ptype main
  54. src ::/0 dst ::/0 proto ipv6-icmp type 135
  55. dir fwd priority 1 ptype main
  56. src ::/0 dst ::/0 proto ipv6-icmp type 135
  57. dir in priority 1 ptype main
  58. src ::/0 dst ::/0 proto ipv6-icmp type 136
  59. dir out priority 1 ptype main
  60. src ::/0 dst ::/0 proto ipv6-icmp type 136
  61. dir fwd priority 1 ptype main
  62. src ::/0 dst ::/0 proto ipv6-icmp type 136
  63. dir in priority 1 ptype main
  64.  
  65. # basic configuration
  66.  
  67. config setup
  68. strictcrlpolicy=no
  69. uniqueids= yes
  70.  
  71. # Add connections here.
  72.  
  73. conn %default
  74. type= tunnel
  75. authby= secret
  76. keyexchange=ike
  77. ikelifetime= 86400s
  78. aggressive= no
  79.  
  80. # Outras configurações
  81. compress= no
  82. forceencaps= yes
  83.  
  84. # IPSEC Fase 1
  85. ike= aes256-sha1-modp1536,aes256gcm16-sha256-ecp521,aes256-sha256-ecp384,aes256gcm16-sha256-ecp256!
  86.  
  87. # IPSEC Fase 2
  88. esp= aes256-sha1-modp1024,aes256gcm16-sha256,aes256-sha256!
  89.  
  90. conn vpnipsec-myclient
  91.  
  92. keyexchange=ike
  93. leftprotoport= %any
  94. ikev2=insist
  95. # IPSEC Fase 1
  96. ike= aes256-sha256-modp2048
  97.  
  98. # IPSEC Fase 2
  99. esp= aes256-sha256-modp2048
  100.  
  101. # Left security
  102. left= 173.X.X.X
  103. leftid= 173.X.X.X
  104. leftsubnet= 10.120.0.36/30
  105. leftauth= secret
  106.  
  107. # Right security
  108. right= 177.X.X.X
  109. rightid= 177.X.X.X
  110. rightauth= secret
  111. rightsubnet= 172.36.0.0/22
  112. auto= start
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement