[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]

Configuring IPsec 1st timer



I'm trying to configure IPsec for the first time. I reviewed the
documentation and believed I configured it properly (as per the
documentation). When I try to start I get the following error:

RTNETLINK answers: Invalid argument

I'm not sure if the other side is configured properly yet, and if this is the
reason for the error.

I also have a couple other of questions that I am wondering if they will become
issues...

1.  My private network is 192.168.0.0 and the gateway is
192.168.0.1. The remote network will be 192.168.1.0 with the gateway
192.168.1.1. I currently have my subnet mask being 255.255.255.0 but
believe I need to change this to 255.255.254.0?

2. I also am running IPtables so I'm also assuming that I will have to
open up the firewall? Does anyone know of the best type of rules to
write (ie port based or interface).

3. Do I have to put any entries in the /etc/racoon/psk.txt? The
documentation indicates the key should be put in the
/etc/sysconfig/network-scripts/keys-<name>

4. How does one implement the X.509 cert method?

5. How about the generation of keys? I have an Authentication and Encryption
Key. The remote peer must also have both of these?

Thanks in Advance!

James




[Date Prev][Date Next]   [Thread Prev][Thread Next]   [Thread Index] [Date Index] [Author Index]