Set up an IPSec VPN for Strongswan in CentOS 6.3
I. Software Description
IPsec is a type of Virtual Private Network (VPN) used to establish an encrypted tunnel between the server and the client and transmit sensitive data. It consists of two phases: the first phase (Phrase 1, ph1), the exchange key to establish a connection, the use of Internet Key Exchange (ike) protocol; the second phase (Phrase 2, ph2 ), after the connection is established, data is
Install Strongswan: an IPsec-based VPN tool on Linux
IPsec is a standard that provides network layer security. It contains Authentication Header (AH) and security load encapsulation (ESP) components. AH provides the integrity of the package, and the ESP component provides the confidentiality of the package. IPsec ensures security at the network layer.
Confidentiality
Data Packet integrity
Source Non-Repudiation
Replay Attack Protection
Release date:Updated on:
Affected Systems:StrongSwan Description:--------------------------------------------------------------------------------Bugtraq id: 66815CVE (CAN) ID: CVE-2014-2338StrongSwan is an IPsec-based open-source VPN solution for Linux.An error occurs when strongSwan 4.0.7-5.1.2 processes the key update after an unestablished IKEv2 SA is started. This can cause bypassing the target authentication mechanism and obtaining unauthorized
represent the photopressure at point N.
2. x-Dist [endpoint] = light pressure reduction time in the middle + total time of all routes
From 1 to E [endpoint]-Dist [endpoint] = the time for increasing the optical pressure in the middle
The two formulas decrease with the increase of DIST [endpoint]
You only need to calculate the maximum Dist [endpoint], which is why we need to use the shortest path.
Ans = (X-Dist [end point]) + (E [end point]-Dist [End Point) = x + E [end point]-2 * Dist [end poin
I have been reading this article, €? What is the cause of this problem? What is the problem? Why? When g has been successfully updated: $ linknbs... I have been reading this article, €? What is the cause of this problem? What is the problem?
Why?
1. install the required Library CentOS: 1yumupdate2yuminstallpam-developens 1. install the required Library
CentOS:
1
Yum update
2
Yum install pam-devel openssl-devel make gcc
2. download strongswan and decompress it (* indicates the current Strongswan version number)
1
Wget http://download.strongswan.org/strongswan.tar.gz
2
Tar xzf strongsw
Set up IPSec VPN in CentOS 6.31. install required Libraries
CentOS:1yum update2yum install pam-devel openssl-devel make gcc
2. Download strongswan and decompress it (* indicates the current Strongswan version number)1 wget http://download.strongswan.org/strongswan.tar.gz2tar xzf strongswan.tar.gz3cd strongswan -*
3. Compile Strongswan:Xen and KVM use the followin
wlan0 to strongswan 255 port 67 interval 3DHCPDISCOVER on wlan0 to strongswan 255 port 67 interval 6DHCPDISCOVER on wlan0 to strongswan 255 port 67 interval 11DHCPDISCOVER on wlan0 to strongswan 255 port 67 interval 17DHCPDISCOVER on wlan0 to strongswan 255 port 67 interval
as a verification tool in this article.Construction of experimental environmentThe server is implemented Strongswan (version 4.4.0) with the famous open source on Linux and the operating system is Ubuntu Server 12.10 (VMware virtual Environment).The client uses the Windows 7 built-in IPSec VPN client.The virtual machine runs on Windows 7, configuring a dual network adapter, using NAT and host-only operating mode, respectively. Two network cards mappe
, regardless of cryptographic core functionality, and are no longer discussed.Now focus on the SAI1 load. SAI1 contains 6 proposal, specific proposal content (expanded after rearrangement) for Cryptographic algorithm integrity algorithm pseudo-random number generation function Diffie-hellman Group3DES_CBC hmac_sha1_96 prf_hmac_sha1 modp_1024[2] aes_cbc_256 hmac_sha1_96 prf_hmac_sha1 modp_1024[3] 3DES_CBC hmac_sha2_256_128 prf_hmac_sha2_256 modp_1
.
////////////////////
I checked the cause on the Internet and referenced a section in "FreeBSD "for the time being:
Bytes -----------------------------------------------------------------------------------------------
Use shell
In fact, SH and CSH are not the best choice for common users, because these two shells are not easy to use, for example, the command line "strongswan" function is not available, and the "
After logging on to the system today and logging on to N commands, I habitually used the upward arrow key to find the historical commands. I suddenly saw this:
$ ^ [[A ^ [[A ^ [
Press the delete key to display the following information:$ ^ HYou can only use Ctrl + BackSpace to delete the content on the left of the cursor ~~~!!! --B
Then I asked Wells, but I only needed to make a small setting and enable it in the Console:
$ Set-o emasc
I checked the cause on the Internet and referenced a sectio
The following are the analysis results and detailed information of the configuration file. I hope this will help you!
Custom server path:
D: \ AuditionGameServer \ AccountServer \ Data \ ServerList. ini
Analysis result: this file is the server partition and database address configuration file.
[ServerGroup]
ServerGroupCount = 4
ServerGroup1 = strongswan 1ServerGroup2 = strongswan 2ServerGroup3 = recommended
value of exit logging is not 0:When the 'rcurl' package is installed, the value of exit strongswan is not 0.When the package 'cairodevic' is installed, the value of exit strongswan is not 0.When the package 'fftw 'is installed, the value of exit zookeeper is not 0.When the package 'rcdd' is installed, the value of exiting zookeeper is not 0.When the package 'rgdal' is installed, the value of exit zookeeper
Json_encode:
Product description:
· Thin PSP (PSP2000 release 3000 )? How can I use strongSwan? Too many? Zookeeper.
· Small PSP serial PSP-1000 with large Serial? も use strongSwan lightning!
Product Title: PSP2000 why does the PSP3000 need to be used? Too many? (PSP-1000 ?? Version) too many? : Too many bytes between-543462
Echo json_encode ($ result );
It is a null value that is passed in now. if I
In php, there are too many Chinese characters, too many Chinese characters, and so many others? When g was just getting started then :? Php strongSwan $ onetest; two $ one; in our press conference, we have been making a wide selection of small and medium-sized documents. why? $ One ######; $ twoone; $ threetwo; echo $ t
G networksWhen g then when else:
// Zookeeper APIs$ One = "test ";Two = $ one; // The latest version of the website is released.
,) is used to display the current desktop of the zookeeper.How to set the switch between two desktopsUse strongswan to switch to strongswan DesktopThere are three ways to use zookeeper to switch between zookeeper desktops.Method 1. Switch between tables based on the table orientation of the desktop:Select "enable cursor key Desktop navigation", and you can use the shortcut menu to switch between tables base
, int timea, int timeb,bool n){ for (string::size_type i = 0; i
Then, I output the piece of story, which means that, according to the story, press enter and it will return to the event processing function three years ago after 20:30 on the Chinese Valentine's Day.
Void printmessage () {wstring s;/**/S = l "Yuki. n> when there are too many threads running, \ n too many threads running too many threads. "; Output (S, 100,300,); s = l" Yuki. n> when there are too many threads, there are too ma
The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion;
products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the
content of the page makes you feel confusing, please write us an email, we will handle the problem
within 5 days after receiving your email.
If you find any instances of plagiarism from the community, please send an email to:
info-contact@alibabacloud.com
and provide relevant evidence. A staff member will contact you within 5 working days.