OPNsense Route based (VTI) PSK setup: Unterschied zwischen den Versionen

Aus Xinux Wiki
Zur Navigation springen Zur Suche springen
Zeile 15: Zeile 15:
 
| '''Phase 2''' || colspan="2" | AES256 – SHA256 – DH16
 
| '''Phase 2''' || colspan="2" | AES256 – SHA256 – DH16
 
|}
 
|}
 +
=VPN: IPsec: Pre-Shared Keys=
 +
==opnsense.it113.int PSK==
 +
{| class="wikitable"
 +
! Einstellung || Wert
 +
|-
 +
| '''Local Identifier''' || 192.168.6.113
 +
|-
 +
| '''Remote Identifier''' || 192.168.6.114
 +
|-
 +
| '''Pre-Shared Key''' || 123Start$
 +
|-
 +
| '''Type''' || PSK
 +
|-
 +
| '''Description''' || –
 +
|}
 +
==opnsense.it114.int PSK==
 +
{| class="wikitable"
 +
! Einstellung || Wert
 +
|-
 +
| '''Local Identifier''' || 192.168.6.114
 +
|-
 +
| '''Remote Identifier''' || 192.168.6.113
 +
|-
 +
| '''Pre-Shared Key''' || 123Start$
 +
|-
 +
| '''Type''' || PSK
 +
|-
 +
| '''Description''' || –
 +
|}
 +
 
=VPN: IPsec: Virtual Tunnel Interfaces=
 
=VPN: IPsec: Virtual Tunnel Interfaces=
 
==opnsense.it113.int VTI==
 
==opnsense.it113.int VTI==

Version vom 2. April 2025, 18:20 Uhr

Szenario

Einstellung opnsense.it113.int opnsense2.it113.int
IP Address 192.168.6.113 192.168.6.114
Tunnel IP 169.254.100.1 169.254.100.2
Internes Netz 172.88.113.0/24 172.88.114.0/24
Pre-Shared Key (PSK) 123Start$
Phase 1 AES256 – SHA256 – DH16
Phase 2 AES256 – SHA256 – DH16

VPN: IPsec: Pre-Shared Keys

opnsense.it113.int PSK

Einstellung Wert
Local Identifier 192.168.6.113
Remote Identifier 192.168.6.114
Pre-Shared Key 123Start$
Type PSK
Description

opnsense.it114.int PSK

Einstellung Wert
Local Identifier 192.168.6.114
Remote Identifier 192.168.6.113
Pre-Shared Key 123Start$
Type PSK
Description

VPN: IPsec: Virtual Tunnel Interfaces

opnsense.it113.int VTI

Einstellung Wert
Enabled aktiviert (✓)
Reqid 10
Local address 192.168.6.113
Remote address 192.168.6.114
Tunnel local address 169.254.100.1
Tunnel remote address 169.254.100.2
Tunnel secondary local address
Tunnel secondary remote address
Name IPSEC10

opnsense.it114.int VTI

Einstellung Wert
Enabled aktiviert (✓)
Reqid 10
Local address 192.168.6.114
Remote address 192.168.6.113
Tunnel local address 169.254.100.2
Tunnel remote address 169.254.100.1
Tunnel secondary local address
Tunnel secondary remote address
Name IPSEC10

VPN: IPsec: Connections

opnsense.it113.int Connections

opnsense.it114.int Connections

VPN: IPsec: Connections

opnsense.it113.int Authentication

opnsense.it114.int Authentication

Links