Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- vpncfg {
- connections {
- enabled = yes;
- conn_type = conntype_lan;
- name = "Juniors Buero";
- always_renew = yes;
- reject_not_encrypted = no;
- dont_filter_netbios = yes;
- localip = 0.0.0.0;
- local_virtualip = 0.0.0.0;
- remoteip = 0.0.0.0;
- remote_virtualip = 0.0.0.0;
- remotehostname = "juniorsbuero.xyz";
- localid {
- fqdn = "meinbuero.xyz";
- }
- remoteid {
- fqdn = "juniorsbuero.xyz";
- }
- mode = phase1_mode_aggressive;
- phase1ss = "all/all/all";
- keytype = connkeytype_pre_shared;
- key = "SehrGeheimUndSo!";
- cert_do_server_auth = no;
- use_nat_t = yes;
- use_xauth = no;
- use_cfgmode = no;
- phase2localid {
- ipnet {
- ipaddr = 192.168.4.0;
- mask = 255.255.255.0;
- }
- }
- phase2remoteid {
- ipnet {
- ipaddr = 192.168.3.0;
- mask = 255.255.255.0;
- }
- }
- phase2ss = "esp-all-all/ah-none/comp-all/pfs";
- accesslist = "permit ip any 192.168.0.0 255.255.255.0",
- "permit ip any 192.168.1.0 255.255.255.0",
- "permit ip any 192.168.2.0 255.255.255.0",
- "permit ip any 192.168.3.0 255.255.255.0";
- }
- ike_forward_rules = "udp 0.0.0.0:500 0.0.0.0:500",
- "udp 0.0.0.0:4500 0.0.0.0:4500";
- }
- // EOF
Advertisement
Add Comment
Please, Sign In to add comment