Tunnel: demo0
1
IPSec peer
ipsec.vpn.net
7
IKE authentication
aes256
2
Preshared key
thebigsecret
8
IKE hash
sha256
3
Mode
tunnel
9
IKE DH group
5 (modp1536)
4
Remote network
10.10.10.0/24
10
ESP authentication
aes128
5
Local network
10.10.12.0/24
11
ESP hash
sha1
6
Local ID
wcclite
If auxiliary data is needed, it is recommended to check or define it first.
Creation of Phase 1 proposal
• Enter section “Phase 1 proposals”.
• Create a new record by assigning new name, for example “aes256sha256dh5” and click the
button “Add”.
• Choose corresponding values: encryption, hash algorithm and DH exponentiation.
• Push “save” to save the data.
Creation of Phase 2 proposal
• Enter section “Phase 2 proposals”.
• Create a new record by assign new name for example “aes128sha1” and click the button
“Add”.
• Choose corresponding values: encryption, hash algorithm.
• Push “save” to save the data.
Creation of tunnel definition
• Enter section connections
66