Project

General

Profile

IKEv2 Configuration Examples » History » Version 13

Andreas Steffen, 10.09.2010 10:05
added EAP_TLS and EAP_TTLS scenarios

1 8 Andreas Steffen
h1. IKEv2 Configuration Examples
2 1 Martin Willi
3 1 Martin Willi
4 1 Martin Willi
5 8 Andreas Steffen
h2. Remote Access
6 1 Martin Willi
7 1 Martin Willi
8 13 Andreas Steffen
|RSA authentication with X.509 certificates    |"IPv4":http://www.strongswan.org/uml/testresults44/ikev2/rw-cert               |"IPv6":http://www.strongswan.org/uml/testresults43/ipv6/rw-ikev2 |"NAT":http://www.strongswan.org/uml/testresults44/ikev2/nat-two-rw |
9 13 Andreas Steffen
|PSK authentication with pre-shared keys       |"IPv4":http://www.strongswan.org/uml/testresults44/ikev2/rw-psk-ipv4           |"IPv6":http://www.strongswan.org/uml/testresults43/ipv6/rw-psk-ikev2 |"NAT":http://www.strongswan.org/uml/testresults44/ikev2/nat-two-rw-psk|
10 13 Andreas Steffen
|EAP_AKA authentication                        |"IPv4":http://www.strongswan.org/uml/testresults44/ikev2/rw-eap-aka-rsa        | | |
11 13 Andreas Steffen
|EAP_AKA authentication with EAP identity      |"IPv4":http://www.strongswan.org/uml/testresults44/ikev2/rw-eap-aka-identity   | | |
12 13 Andreas Steffen
|EAP_SIM authentication                        |"IPv4":http://www.strongswan.org/uml/testresults44/ikev2/rw-eap-sim-rsa        | |"RADIUS":http://www.strongswan.org/uml/testresults44/ikev2/rw-eap-sim-radius |
13 13 Andreas Steffen
|EAP_SIM authentication with EAP identity      |                                                                               | |"RADIUS":http://www.strongswan.org/uml/testresults44/ikev2/rw-eap-sim-id-radius |
14 13 Andreas Steffen
|EAP_SIM only authentication                   |"IPv4":http://www.strongswan.org/uml/testresults44/ikev2/rw-eap-sim-only       | | |
15 13 Andreas Steffen
|EAP_MSCHAPv2 authentication with EAP identity |"IPv4":http://www.strongswan.org/uml/testresults44/ikev2/rw-eap-mschapv2-id-rsa| | |
16 13 Andreas Steffen
|EAP_MD5 authentication                        |"IPv4":http://www.strongswan.org/uml/testresults44/ikev2/rw-eap-md5-rsa        | |"RADIUS":http://www.strongswan.org/uml/testresults44/ikev2/rw-eap-md5-radius |
17 13 Andreas Steffen
|EAP_MD5 authentication with EAP identity      |                                                                               | |"RADIUS":http://www.strongswan.org/uml/testresults44/ikev2/rw-eap-md5-id-radius |
18 13 Andreas Steffen
|EAP_TLS authentication                        |"IPv4":http://www.strongswan.org/uml/testresults45dr/ikev2/rw-eap-tls-only     | |"RADIUS":http://www.strongswan.org/uml/testresults45dr/ikev2/rw-eap-tls-radius |
19 13 Andreas Steffen
|EAP_TTLS with EAP_MD5 authentication          |"IPv4":http://www.strongswan.org/uml/testresults45dr/ikev2/rw-eap-ttls-only     | |"RADIUS":http://www.strongswan.org/uml/testresults45dr/ikev2/rw-eap-ttls-radius |
20 1 Martin Willi
21 1 Martin Willi
22 8 Andreas Steffen
h2. Remote Access with Virtual IP Adresses
23 1 Martin Willi
24 1 Martin Willi
25 12 Andreas Steffen
| RAM-based server-side virtual IP pool         |"IPv4":http://www.strongswan.org/uml/testresults43/ikev2/ip-pool         |
26 12 Andreas Steffen
| DB-based server-side virtual IP pool      |"IPv4":http://www.strongswan.org/uml/testresults43/ikev2/ip-pool-db      |
27 10 Andreas Steffen
| Static server-side virtual IP addresses       |"IPv4":http://www.strongswan.org/uml/testresults43/ikev2/config-payload  |
28 10 Andreas Steffen
| Static client-side virtual IP addresses       |"IPv4":http://www.strongswan.org/uml/testresults43/ikev2/virtual-ip      |
29 12 Andreas Steffen
| Two RAM-based server-side virtual IP pools     |"IPv4":http://www.strongswan.org/uml/testresults43/ikev2/ip-two-pools    |
30 12 Andreas Steffen
| Two DB-based server-side virtual IP pools |"IPv4":http://www.strongswan.org/uml/testresults43/ikev2/ip-two-pools-db |
31 8 Andreas Steffen
32 8 Andreas Steffen
33 8 Andreas Steffen
h2. Site-to-Site
34 8 Andreas Steffen
35 8 Andreas Steffen
36 10 Andreas Steffen
|RSA authentication with X.509 certificates |"IPv4":http://www.strongswan.org/uml/testresults43/ikev2/net2net-cert     |"IPv6":http://www.strongswan.org/uml/testresults43/ipv6/net2net-ikev2 |
37 10 Andreas Steffen
|PSK authentication with pre-shared keys    |"IPv4":http://www.strongswan.org/uml/testresults43/ikev2/net2net-psk | |
38 8 Andreas Steffen
39 8 Andreas Steffen
40 8 Andreas Steffen
h2. Host-to-Host
41 8 Andreas Steffen
42 8 Andreas Steffen
43 10 Andreas Steffen
|IPsec tunnel mode with X.509 certificates    |"IPv4":http://www.strongswan.org/uml/testresults43/ikev2/host2host-cert      |"IPv6":http://www.strongswan.org/uml/testresults43/ipv6/host2host-ikev2 |
44 10 Andreas Steffen
|IPsec transport mode with X.509 certificates |"IPv4":http://www.strongswan.org/uml/testresults43/ikev2/host2host-transport |"IPv6":http://www.strongswan.org/uml/testresults43/ipv6/transport-ikev2 |
45 8 Andreas Steffen
46 8 Andreas Steffen
47 8 Andreas Steffen
h2. Complete List
48 8 Andreas Steffen
49 8 Andreas Steffen
50 10 Andreas Steffen
"All IKEv2 test scenarios":http://www.strongswan.org/uml/testresults43/ikev2