1
0
mirror of synced 2024-11-22 13:06:02 +03:00

Update docs

- Update Linux VPN client command-line instructions
This commit is contained in:
hwdsl2 2021-01-08 01:29:05 -06:00
parent 5d9929c8c7
commit 6c55c19b44
2 changed files with 8 additions and 44 deletions

View File

@ -430,35 +430,17 @@ VPN_PASSWORD='你的VPN密码'
cat > /etc/ipsec.conf <<EOF cat > /etc/ipsec.conf <<EOF
# ipsec.conf - strongSwan IPsec configuration file # ipsec.conf - strongSwan IPsec configuration file
# basic configuration
config setup
# strictcrlpolicy=yes
# uniqueids = no
# Add connections here.
# Sample VPN connections
conn %default
ikelifetime=60m
keylife=20m
rekeymargin=3m
keyingtries=1
keyexchange=ikev1
authby=secret
ike=aes128-sha1-modp2048!
esp=aes128-sha1-modp2048!
conn myvpn conn myvpn
keyexchange=ikev1
left=%defaultroute
auto=add auto=add
keyexchange=ikev1
authby=secret authby=secret
type=transport type=transport
left=%defaultroute
leftprotoport=17/1701 leftprotoport=17/1701
rightprotoport=17/1701 rightprotoport=17/1701
right=$VPN_SERVER_IP right=$VPN_SERVER_IP
ike=aes128-sha1-modp2048
esp=aes128-sha1
EOF EOF
cat > /etc/ipsec.secrets <<EOF cat > /etc/ipsec.secrets <<EOF

View File

@ -429,35 +429,17 @@ Configure strongSwan:
cat > /etc/ipsec.conf <<EOF cat > /etc/ipsec.conf <<EOF
# ipsec.conf - strongSwan IPsec configuration file # ipsec.conf - strongSwan IPsec configuration file
# basic configuration
config setup
# strictcrlpolicy=yes
# uniqueids = no
# Add connections here.
# Sample VPN connections
conn %default
ikelifetime=60m
keylife=20m
rekeymargin=3m
keyingtries=1
keyexchange=ikev1
authby=secret
ike=aes128-sha1-modp2048!
esp=aes128-sha1-modp2048!
conn myvpn conn myvpn
keyexchange=ikev1
left=%defaultroute
auto=add auto=add
keyexchange=ikev1
authby=secret authby=secret
type=transport type=transport
left=%defaultroute
leftprotoport=17/1701 leftprotoport=17/1701
rightprotoport=17/1701 rightprotoport=17/1701
right=$VPN_SERVER_IP right=$VPN_SERVER_IP
ike=aes128-sha1-modp2048
esp=aes128-sha1
EOF EOF
cat > /etc/ipsec.secrets <<EOF cat > /etc/ipsec.secrets <<EOF