Digitalgoat.com :: Technology Solutions Charlestown Indiana
| Newsflash |
|---|
|
|
| OpenSwan to Cisco vpn config |
|
|
How to configure openswan to cisco vpn.
I used a base install of archlinux with iptables, iproute, and openswan installed from the package repos. The cisco device was a 2621 running 12.3.22 , with ipfw crypto. You can verify crypto on the cisco side by doing a "show crypto isakmp sa" and "show crypto ipsec sa". On openswan do a "ipsec barf | more". Below is a config example.
#add to config conn test #/etc/ipsec.secrets "OPENSWAN PUBLIC IP ADDRESS" "CISCO PUBLIC IP" : PSK ""PRESHARED KEY"" <-- key musy be in double quotes
crypto isakmp key "PRESHARED KEY" address "OPENSWAN PUBLIC IP ADDRESS" no-xauth ip access-list extended OPENSWAN crypto ipsec transform-set AES esp-aes 256 esp-sha-hmac crypto isakmp policy 10 crypto map net 10 ipsec-isakmp interface FastEthernet0/1 |
| < Prev |
|---|
| eWeather | ||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
||||||||||||||||||||||



