![]() Set auth-algorithms=sha256 enc-algorithms=aes-128-gcm lifetime=8h pfs-group=modp2048Īdd auth-algorithms=sha256 enc-algorithms=aes-128-cbc,aes-128-ctr,aes-128-gcm lifetime=1h name=phase2-prop pfs-group=modp2048 # ipsec proposal is the phase2 configuration in pfsense ![]() ![]() Set dh-group=modp2048 enc-algorithm=aes-128 hash-algorithm=sha256 name=PHASE1 # ipsec profile is considered the phase-1 proposal in pfsense # 0.0.0.0 = mikrotik dynamic CG-NAT addressĪdd address=1.1.1.1/32 exchange-mode=ike2 name=DCRNET port=500
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |