- 论坛徽章:
- 0
|
回复 #2 kns1024wh 的帖子
配置文件参考如下:- # cat /etc/ipsec.conf
- # /etc/ipsec.conf - Openswan IPsec configuration file
- #
- # Manual: ipsec.conf.5
- #
- # Please place your own config files in /etc/ipsec.d/ ending in .conf
- version 2.0 # conforms to second version of ipsec.conf specification
- # basic configuration
- config setup
- # Debug-logging controls: "none" for (almost) none, "all" for lots.
- # klipsdebug=none
- # plutodebug="control parsing"
- nat_traversal=yes
- include /etc/ipsec.d/*.conf
- conn net-to-net
- right=192.168.3.110
- rightsubnet=172.16.16.0/24
- rightid=@right01
- # RSA 2192 bits right01 Fri Dec 11 19:17:56 2009
- rightrsasigkey=0sAQOOeh9pmtAtelwLZj9FLjTZELUyUB0jI6LDV3bVeFv8j02/V271wSBK7nSJJvwvKBwaqfAwwIjMRjzR2Fhj8iAjNDF8kPSo24wWzjuM/mLNT/sXz4zLOk5cYyiyv4qpB0P//Z2tVsyZCRWv6nHMwJuetjpGpwdA5SE0gj87/t6kJVe35c8uAZYLXRX86lKx///2XUVBB+p9TnrO1noNgTEoE/bDnWg+h6cqo/8DmDXkfvk3trC+kuXp2o5/N0kAoX76biV/tRoGZ4zf9hOkxm0FPUo0Et+f5k8+ce2KyqPn6pt6rvJqn6A9qzZS5DtAvWcI9w1bjAaeh51SK1w4k0bKbBv2F+wt4Wnv9IDBUU32jT5F
- rightnexthop=%defaultroute
- left=192.168.3.120
- leftsubnet=10.10.10.0/24
- leftid=@left01
- # RSA 2192 bits left01 Fri Dec 11 19:19:51 2009
- leftrsasigkey=0sAQONLWrWTYoHV2Z7QyQwtMG5CqhK9h+mdgHIh1/o0MXRfTTzoZv5bS3EeZgMbCeQwX7hkMvSaJfJEZUsEAolr+ZTE9QV6xqNGX7+AgqnDDI2DCQIe1el7hl7XTgoAppSC7TOlb3D3L0oI5LCR8UkzEOqevGo0HH1oUeBePt3kINWyZlbecSP+mxy+32NnOR+T6pnKuan038xYF2T3ahvU2Cceds6zkerWMsYyP+Ye3VDIEof8+RjO5CgM4Z3JJLatnd0xo7sGY+bfsviBqB5FQq/ghfrw5QkqCWOb93bx8a1P5TRokQgQrI3igTSmNkICkmQFQtnrXkcnlUtVGPwfYiONWe/T8FclrOXtYRZhvaoFBZ7
- leftnexthop=%defaultroute
- auto=add
复制代码
或许是由于CentOS 版本的问题,我后来使用CentOS 5.0则没有此问题,出现以上问题的是CentOS 5.4 X86的版本。 |
|