Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.user > #210309

Re: L2TP VPN client

From David Christensen <dpchrist@holgerdanske.com>
Newsgroups linux.debian.user
Subject Re: L2TP VPN client
Date 2019-06-23 19:10 +0200
Message-ID <ycea5-UO-1@gated-at.bofh.it> (permalink)
References <yc0A9-1br-3@gated-at.bofh.it> <ycazv-79b-1@gated-at.bofh.it>
Organization linux.* mail to news gateway

Show all headers | View raw


On 6/23/19 6:16 AM, Curt wrote:
> On 2019-06-23, David Christensen <dpchrist@holgerdanske.com> wrote:
>>
>> STFW I see:
>>
>> https://www.bestvpnz.com/tutorials/how-to-set-up-l2tp-ipsec-vpn-on-linux-networkmanager-strongswan/
>>
>> I have installed:
>>
>> 2019-06-22 19:04:11 root@tinkywinky ~
>> # dpkg-query --show xl2tpd strongswan network-manager-strongswan
>> network-manager-strongswan	1.4.1-1
>> strongswan	5.5.1-4+deb9u4
>> xl2tpd	1.3.8+dfsg-1
>>
>>
>> The Network Manager GUI does not have a field for the pre-shared key, so
>> I have put the key into a file:

Thanks for the reply.  :-)


> Looking at your link above, it says:
> 
>   If you need a PSK you will want to select Pre-shared key under the
>   Authentication: pull-down menu rather than EAP.

I saw that and I did that.


> (Psk supported since version 1.3.1 of the strongswan nm plugin.)

I have installed network-manager-strongswan 1.4.1-1.


> https://wiki.strongswan.org/projects/strongswan/wiki/NetworkManager
> 
>    PSK is supported starting with NetworkManager-strongswan-1.3.1, but
>    strong secrets are enforced.
>   
> I guess strong secrets means strlen no less than 20.
> 
> I must be missing something.

That link confirms that I need a feature that does not exist:

     NetworkManager allows configuration and control of VPN daemons
     through a plugin interface. We provide such a plugin for
     NetworkManager to configure road warrior clients for the most common
     setups. The plugin currently supports connections using the IKEv2
     protocol only.


I will see if I can configure my VPN server to accept IKEv2 connections.


David

Back to linux.debian.user | Previous | Next — Previous in thread | Find similar | Unroll thread


Thread

L2TP VPN client David Christensen <dpchrist@holgerdanske.com> - 2019-06-23 04:40 +0200
  Re: L2TP VPN client Curt <curty@free.fr> - 2019-06-23 15:20 +0200
    Re: L2TP VPN client David Christensen <dpchrist@holgerdanske.com> - 2019-06-23 19:10 +0200

csiph-web