User Tools

Site Tools


doc:appunti:linux:sa:ipsec_strongswan_debian_11

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
doc:appunti:linux:sa:ipsec_strongswan_debian_11 [2024/12/31 13:01] – [Servizi System] niccolodoc:appunti:linux:sa:ipsec_strongswan_debian_11 [2024/12/31 13:07] (current) – [Debug] niccolo
Line 76: Line 76:
  
 :!: **ATTENZIONE** In **Debian 10** il servizio da avviare si chiamava **strongswan.service**. :!: **ATTENZIONE** In **Debian 10** il servizio da avviare si chiamava **strongswan.service**.
 +
 +===== Debug =====
 +
 +<code>
 +ipsec statusall
 +</code>
 +
 +Dovrebbe produrre qualcosa del genere:
 +
 +<code>
 +...
 +Connections:
 +office1-office2:  145.18.51.38...15.125.28.13  IKEv2, dpddelay=30s
 +office1-office2:   local:  [145.18.51.38] uses pre-shared key authentication
 +office1-office2:   remote: [15.125.28.13] uses pre-shared key authentication
 +office1-office2:   child:  192.168.30.0/24 === 192.168.100.0/24 TUNNEL, dpdaction=restart
 +Security Associations (1 up, 0 connecting):
 +office1-office2[1]: ESTABLISHED 42 minutes ago,
 +    145.18.51.38[145.18.51.38]...15.125.28.13[15.125.28.13]
 +...
 +</code>
 +
 +Questi i processi che devono risultare in esecuzione:
 +
 +<code>
 +ps uax | grep charon
 +</code>
 +
 +<code>
 +... /usr/lib/ipsec/starter --daemon charon --nofork
 +... /usr/lib/ipsec/charon --debug-dmn 2 --debug-mgr 2 --debug-ike 2 --debug-chd 2
 +</code>
 +
  
doc/appunti/linux/sa/ipsec_strongswan_debian_11.1735646472.txt.gz · Last modified: 2024/12/31 13:01 by niccolo