Project

General

Profile

Bug #11951 ยป ipsec-config-pfSense.home.arpa-20210524071409.xml

Maxim A, 05/24/2021 02:40 AM

 
1

    
2
<ipsec>
3
	<phase1>
4
		<ikeid>1</ikeid>
5
		<iketype>ikev1</iketype>
6
		<mode>main</mode>
7
		<interface>wan</interface>
8
		<remote-gateway>172.16.1.3</remote-gateway>
9
		<protocol>inet</protocol>
10
		<myid_type>myaddress</myid_type>
11
		<myid_data></myid_data>
12
		<peerid_type>peeraddress</peerid_type>
13
		<peerid_data></peerid_data>
14
		<encryption>
15
			<item>
16
				<encryption-algorithm>
17
					<name>aes</name>
18
					<keylen>256</keylen>
19
				</encryption-algorithm>
20
				<hash-algorithm>sha256</hash-algorithm>
21
				<prf-algorithm>md5</prf-algorithm>
22
				<dhgroup>16</dhgroup>
23
			</item>
24
		</encryption>
25
		<lifetime>28800</lifetime>
26
		<rekey_time></rekey_time>
27
		<reauth_time></reauth_time>
28
		<rand_time></rand_time>
29
		<pre-shared-key>5e7f514135fa98883be57fa7422dd3f56a81562f1ae454d337a4b62f</pre-shared-key>
30
		<private-key></private-key>
31
		<certref></certref>
32
		<pkcs11certref></pkcs11certref>
33
		<pkcs11pin></pkcs11pin>
34
		<caref></caref>
35
		<authentication_method>pre_shared_key</authentication_method>
36
		<descr><![CDATA[proizv]]></descr>
37
		<nat_traversal>on</nat_traversal>
38
		<mobike>off</mobike>
39
		<startaction></startaction>
40
		<closeaction></closeaction>
41
		<dpd_delay>10</dpd_delay>
42
		<dpd_maxfail>5</dpd_maxfail>
43
	</phase1>
44
	<client></client>
45
	<phase2>
46
		<ikeid>1</ikeid>
47
		<uniqid>60ab6d4441108</uniqid>
48
		<mode>tunnel</mode>
49
		<reqid>10</reqid>
50
		<localid>
51
			<type>network</type>
52
			<address>192.168.101.0</address>
53
			<netbits>24</netbits>
54
		</localid>
55
		<remoteid>
56
			<type>network</type>
57
			<address>192.168.3.0</address>
58
			<netbits>24</netbits>
59
		</remoteid>
60
		<protocol>esp</protocol>
61
		<encryption-algorithm-option>
62
			<name>aes128gcm</name>
63
			<keylen>auto</keylen>
64
		</encryption-algorithm-option>
65
		<pfsgroup>0</pfsgroup>
66
		<lifetime>3600</lifetime>
67
		<rekey_time></rekey_time>
68
		<rand_time></rand_time>
69
		<pinghost></pinghost>
70
		<descr></descr>
71
	</phase2>
72
	<phase2>
73
		<ikeid>1</ikeid>
74
		<uniqid>60ab6d4a98d32</uniqid>
75
		<mode>tunnel</mode>
76
		<reqid>11</reqid>
77
		<localid>
78
			<type>network</type>
79
			<address>192.168.102.0</address>
80
			<netbits>24</netbits>
81
		</localid>
82
		<remoteid>
83
			<type>network</type>
84
			<address>192.168.3.0</address>
85
			<netbits>24</netbits>
86
		</remoteid>
87
		<protocol>esp</protocol>
88
		<encryption-algorithm-option>
89
			<name>aes128gcm</name>
90
			<keylen>auto</keylen>
91
		</encryption-algorithm-option>
92
		<pfsgroup>0</pfsgroup>
93
		<lifetime>3600</lifetime>
94
		<rekey_time></rekey_time>
95
		<rand_time></rand_time>
96
		<pinghost></pinghost>
97
		<descr></descr>
98
	</phase2>
99
	<phase2>
100
		<ikeid>1</ikeid>
101
		<uniqid>60ab6d50d1882</uniqid>
102
		<mode>tunnel</mode>
103
		<reqid>12</reqid>
104
		<localid>
105
			<type>network</type>
106
			<address>192.168.103.0</address>
107
			<netbits>24</netbits>
108
		</localid>
109
		<remoteid>
110
			<type>network</type>
111
			<address>192.168.3.0</address>
112
			<netbits>24</netbits>
113
		</remoteid>
114
		<protocol>esp</protocol>
115
		<encryption-algorithm-option>
116
			<name>aes128gcm</name>
117
			<keylen>auto</keylen>
118
		</encryption-algorithm-option>
119
		<pfsgroup>0</pfsgroup>
120
		<lifetime>3600</lifetime>
121
		<rekey_time></rekey_time>
122
		<rand_time></rand_time>
123
		<pinghost></pinghost>
124
		<descr></descr>
125
	</phase2>
126
	<phase2>
127
		<ikeid>1</ikeid>
128
		<uniqid>60ab6d7d8f13b</uniqid>
129
		<mode>tunnel</mode>
130
		<reqid>13</reqid>
131
		<localid>
132
			<type>network</type>
133
			<address>192.168.104.0</address>
134
			<netbits>24</netbits>
135
		</localid>
136
		<remoteid>
137
			<type>network</type>
138
			<address>192.168.3.0</address>
139
			<netbits>24</netbits>
140
		</remoteid>
141
		<protocol>esp</protocol>
142
		<encryption-algorithm-option>
143
			<name>aes128gcm</name>
144
			<keylen>auto</keylen>
145
		</encryption-algorithm-option>
146
		<pfsgroup>0</pfsgroup>
147
		<lifetime>3600</lifetime>
148
		<rekey_time></rekey_time>
149
		<rand_time></rand_time>
150
		<pinghost></pinghost>
151
		<descr></descr>
152
	</phase2>
153
	<phase2>
154
		<ikeid>1</ikeid>
155
		<uniqid>60ab6d85dd49f</uniqid>
156
		<mode>tunnel</mode>
157
		<reqid>14</reqid>
158
		<localid>
159
			<type>network</type>
160
			<address>192.168.105.0</address>
161
			<netbits>24</netbits>
162
		</localid>
163
		<remoteid>
164
			<type>network</type>
165
			<address>192.168.3.0</address>
166
			<netbits>24</netbits>
167
		</remoteid>
168
		<protocol>esp</protocol>
169
		<encryption-algorithm-option>
170
			<name>aes128gcm</name>
171
			<keylen>auto</keylen>
172
		</encryption-algorithm-option>
173
		<pfsgroup>0</pfsgroup>
174
		<lifetime>3600</lifetime>
175
		<rekey_time></rekey_time>
176
		<rand_time></rand_time>
177
		<pinghost></pinghost>
178
		<descr></descr>
179
	</phase2>
180
	<phase2>
181
		<ikeid>1</ikeid>
182
		<uniqid>60ab4c7ae7c72</uniqid>
183
		<mode>tunnel</mode>
184
		<reqid>1</reqid>
185
		<localid>
186
			<type>network</type>
187
			<address>192.168.106.0</address>
188
			<netbits>24</netbits>
189
		</localid>
190
		<remoteid>
191
			<type>network</type>
192
			<address>192.168.3.0</address>
193
			<netbits>24</netbits>
194
		</remoteid>
195
		<protocol>esp</protocol>
196
		<encryption-algorithm-option>
197
			<name>aes128gcm</name>
198
			<keylen>auto</keylen>
199
		</encryption-algorithm-option>
200
		<pfsgroup>0</pfsgroup>
201
		<lifetime>3600</lifetime>
202
		<rekey_time></rekey_time>
203
		<rand_time></rand_time>
204
		<pinghost></pinghost>
205
		<descr></descr>
206
	</phase2>
207
	<phase2>
208
		<ikeid>1</ikeid>
209
		<uniqid>60ab4c8b67e73</uniqid>
210
		<mode>tunnel</mode>
211
		<reqid>2</reqid>
212
		<localid>
213
			<type>network</type>
214
			<address>192.168.107.0</address>
215
			<netbits>24</netbits>
216
		</localid>
217
		<remoteid>
218
			<type>network</type>
219
			<address>192.168.3.0</address>
220
			<netbits>24</netbits>
221
		</remoteid>
222
		<protocol>esp</protocol>
223
		<encryption-algorithm-option>
224
			<name>aes128gcm</name>
225
			<keylen>auto</keylen>
226
		</encryption-algorithm-option>
227
		<pfsgroup>0</pfsgroup>
228
		<lifetime>3600</lifetime>
229
		<rekey_time></rekey_time>
230
		<rand_time></rand_time>
231
		<pinghost></pinghost>
232
		<descr></descr>
233
	</phase2>
234
	<phase2>
235
		<ikeid>1</ikeid>
236
		<uniqid>60ab4c93bdac9</uniqid>
237
		<mode>tunnel</mode>
238
		<reqid>3</reqid>
239
		<localid>
240
			<type>network</type>
241
			<address>192.168.108.0</address>
242
			<netbits>24</netbits>
243
		</localid>
244
		<remoteid>
245
			<type>network</type>
246
			<address>192.168.3.0</address>
247
			<netbits>24</netbits>
248
		</remoteid>
249
		<protocol>esp</protocol>
250
		<encryption-algorithm-option>
251
			<name>aes128gcm</name>
252
			<keylen>auto</keylen>
253
		</encryption-algorithm-option>
254
		<pfsgroup>0</pfsgroup>
255
		<lifetime>3600</lifetime>
256
		<rekey_time></rekey_time>
257
		<rand_time></rand_time>
258
		<pinghost></pinghost>
259
		<descr></descr>
260
	</phase2>
261
	<phase2>
262
		<ikeid>1</ikeid>
263
		<uniqid>60ab4c99b211f</uniqid>
264
		<mode>tunnel</mode>
265
		<reqid>5</reqid>
266
		<localid>
267
			<type>network</type>
268
			<address>192.168.109.0</address>
269
			<netbits>24</netbits>
270
		</localid>
271
		<remoteid>
272
			<type>network</type>
273
			<address>192.168.3.0</address>
274
			<netbits>24</netbits>
275
		</remoteid>
276
		<protocol>esp</protocol>
277
		<encryption-algorithm-option>
278
			<name>aes128gcm</name>
279
			<keylen>auto</keylen>
280
		</encryption-algorithm-option>
281
		<pfsgroup>0</pfsgroup>
282
		<lifetime>3600</lifetime>
283
		<rekey_time></rekey_time>
284
		<rand_time></rand_time>
285
		<pinghost></pinghost>
286
		<descr></descr>
287
	</phase2>
288
	<phase2>
289
		<ikeid>1</ikeid>
290
		<uniqid>60ab4ca12f31b</uniqid>
291
		<mode>tunnel</mode>
292
		<reqid>6</reqid>
293
		<localid>
294
			<type>network</type>
295
			<address>192.168.110.0</address>
296
			<netbits>24</netbits>
297
		</localid>
298
		<remoteid>
299
			<type>network</type>
300
			<address>192.168.3.0</address>
301
			<netbits>24</netbits>
302
		</remoteid>
303
		<protocol>esp</protocol>
304
		<encryption-algorithm-option>
305
			<name>aes128gcm</name>
306
			<keylen>auto</keylen>
307
		</encryption-algorithm-option>
308
		<pfsgroup>0</pfsgroup>
309
		<lifetime>3600</lifetime>
310
		<rekey_time></rekey_time>
311
		<rand_time></rand_time>
312
		<pinghost></pinghost>
313
		<descr></descr>
314
	</phase2>
315
	<phase2>
316
		<ikeid>1</ikeid>
317
		<uniqid>60ab4ca6ea848</uniqid>
318
		<mode>tunnel</mode>
319
		<reqid>7</reqid>
320
		<localid>
321
			<type>network</type>
322
			<address>192.168.111.0</address>
323
			<netbits>24</netbits>
324
		</localid>
325
		<remoteid>
326
			<type>network</type>
327
			<address>192.168.3.0</address>
328
			<netbits>24</netbits>
329
		</remoteid>
330
		<protocol>esp</protocol>
331
		<encryption-algorithm-option>
332
			<name>aes128gcm</name>
333
			<keylen>auto</keylen>
334
		</encryption-algorithm-option>
335
		<pfsgroup>0</pfsgroup>
336
		<lifetime>3600</lifetime>
337
		<rekey_time></rekey_time>
338
		<rand_time></rand_time>
339
		<pinghost></pinghost>
340
		<descr></descr>
341
	</phase2>
342
	<logging>
343
		<dmn>1</dmn>
344
		<mgr>1</mgr>
345
		<ike>2</ike>
346
		<chd>2</chd>
347
		<job>1</job>
348
		<cfg>2</cfg>
349
		<knl>1</knl>
350
		<net>1</net>
351
		<asn>1</asn>
352
		<enc>1</enc>
353
		<imc>1</imc>
354
		<imv>1</imv>
355
		<pts>1</pts>
356
		<tls>1</tls>
357
		<esp>1</esp>
358
		<lib>1</lib>
359
	</logging>
360
	<uniqueids>yes</uniqueids>
361
	<vtimaps></vtimaps>
362
</ipsec>
    (1-1/1)