hi all,
im in the process of creating an IPsec server on my opnsense f/w but couple of questions
when it says "virtual ipv4 address pool"
can i enter in any subnet ie a virtual one or does it need to be a physical one that is on my vlan switch?
"phase 2 pfs group"
shall i leave that off?
thanks,
rob
really good how to doing ipsec ikev2
https://wiki.opnsense.org/manual/how-tos/ipsec-rw-srv-mschapv2.html
one question tho when i set up this do i need to install the cert on the remote/clients computer?
scrap this i have done it with l2tp/ipsec, i will post what i have done in another thread