Knowledgebase

Any StrongSwan experts here?

Posted by RandomThoughts, 10-19-2012, 09:59 AM
Hi all, I'd like to set up a VPN from my CentOS VPS to my Vista PC using StrongSwan, the trouble is, there's so many different configuration options on StrongSwan's wiki that I don't know where to start. I just want a basic VPN, with PSK if that doesn't add too much complication. Not looking for too much handholding, just need to be pointed to the right configuration guides / examples on their wiki. Thanks for looking

Posted by jwieder, 10-29-2012, 01:56 PM
Hi - Virtualized environments can complicate VPN deployment significantly. A lot of providers filter GRE / type 47 packets, for example. The following assumes your host will address your networking requests or that you control networking. At the risk of being a bit off-topic, if what you are looking for is an easy to setup and administer VPN connection between a CentOS host and a single Windows desktop, I would recommend pptpd. I can't post links here, but if you Google "Clarkson University Install PPTP on Centos" you should find a great guide. You need to have GRE and port 1723 enabled through your firewall, a few private IPs available and a public IP available. PPTP/MS-CHAP runs natively in Windows XP and above so there is no crazy client configuration or installation. The entire setup guide is one page, and I have yet to run into serious install trouble. While I wouldnt recommend this option for projects that require incredibly strong encryption, PPTP is an easy to use VPN solution that allows you to lock down your server considerably without spending a great deal of time with troubleshooting configuration or client compatibility issues. Last edited by jwieder; 10-29-2012 at 02:06 PM. Reason: deployed first response accidentally without completing

Posted by RandomThoughts, 10-29-2012, 07:51 PM
Thanks for the reply but I think I'm going to forget it, spent far too many hours trying to get Strongswan working already

Posted by jwieder, 10-30-2012, 01:29 PM
Understood. That being the case,your best bet is going to be configuring the "Roadwarrior case with virtual IP" example from the StrongSWAN wiki you descibed. That would allow for the most straight forward configuration without the need for an appliance on the side of your Windows Vista end point computer.

Posted by dcarrera, 10-30-2012, 09:54 PM
I have used openVPN on ubuntu, it works in vmware and citrix xenserver. Also licensing is like $5 per client connection.



Was this answer helpful?

Add to Favourites Add to Favourites

Print this Article Print this Article

Also Read
IdleServ problems (Views: 642)
vpshive down (Views: 577)
MDADM Problem (Views: 572)


Language:

Client Login

Email

Password

Remember Me

Search