Project

General

Profile

IKEv1 Configuration Examples

These example scenarios use the deprecated stroke management interface.

Remote Access

RSA authentication with X.509 certificates IPv4 IPv6 NAT
PSK authentication with pre-shared keys (IP) IPv4 IPv6
PSK authentication with pre-shared keys (FQDN) IPv4
RSA with XAUTH authentication IPv4
PSK with XAUTH authentication IPv4
Hybrid RSA (server) / XAUTH (client) authentication IPv4

Remote Access with Virtual IP Adresses

RAM-based server-side virtual IP pool IPv4
DB-based server-side virtual IP pool IPv4
Static server-side virtual IP addresses IPv4
Static server-side virtual IP addresses in push mode IPv4
Static client-side virtual IP addresses IPv4
RSA with XAUTH authentication and virtual IP addresses IPv4
PSK with XAUTH authentication and virtual IP addresses IPv4

Site-to-Site

RSA authentication with X.509 certificates IPv4 IPv6
PSK authentication with pre-shared keys IPv4

Host-to-Host

IPsec tunnel mode with X.509 certificates IPv4 IPv6
IPsec transport mode with X.509 certificates IPv4 IPv6

IP Protocol and Port Policies

IPsec tunnel restricted to ICMP and ssh protocols IPv4

Complete List

All IKEv1 test scenarios