conn con6-000 aggressive = no fragmentation = yes keyexchange = ikev1 mobike = yes reauth = yes rekey = yes forceencaps = no installpolicy = yes type = tunnel dpdaction = none left = 192.168.150.2 right = der.sophos-ihre.url leftid = meine.noip.me ikelifetime = 28800s lifetime = 28800s ike = aes256-sha256-modp2048! leftauth = psk rightauth = psk rightid = XX.XX.XX.XX [in der GUI über "Peer-IP-Adresse" zugewiesen -- geprüft und ok] rightsubnet = 172.16.0.0/24 leftsubnet = 172.31.0.0/23 esp = aes256-sha256-modp2048! auto = route
conn con5-000 aggressive = no fragmentation = yes keyexchange = ikev1 mobike = yes reauth = yes rekey = yes forceencaps = no installpolicy = yes type = tunnel dpdaction = none left = 192.168.150.2 right = dem.ipcop-seine.url leftid = meine.noip.me ikelifetime = 3600s lifetime = 28800s ike = 3des-sha1-modp2048! leftauth = psk rightauth = psk rightid = 172.31.1.1 [das ist natürlich ein Fehler, in der GUI über "Peer-IP-Adresse" gesetzt] rightsubnet = 172.18.0.0/23 leftsubnet = 172.31.0.0/23 esp = aes256-sha1-modp2048,aes192-sha1-modp2048,aes128-sha1-modp2048! auto = route
conn con5-000 aggressive = no fragmentation = yes keyexchange = ikev1 mobike = yes reauth = yes rekey = yes forceencaps = no installpolicy = yes type = tunnel dpdaction = none left = 192.168.150.2 right = dem.ipcop-seine.url leftid = meine.noip.me ikelifetime = 3600s lifetime = 28800s ike = 3des-sha1-modp2048! leftauth = psk rightauth = psk rightid = YY.YY.YY.YY [einzige Änderung, jetzt sollte es passen] rightsubnet = 172.18.0.0/23 leftsubnet = 172.31.0.0/23 esp = aes256-sha1-modp2048,aes192-sha1-modp2048,aes128-sha1-modp2048! auto = route