setting up IPsec server, some questions

Started by robertkwild, July 21, 2020, 05:06:58 PM

Previous topic - Next topic
hi all,

im in the process of creating an IPsec server on my opnsense f/w but couple of questions

when it says "virtual ipv4 address pool"

can i enter in any subnet ie a virtual one or does it need to be a physical one that is on my vlan switch?

"phase 2 pfs group"

shall i leave that off?

thanks,
rob


one question tho when i set up this do i need to install the cert on the remote/clients computer?

scrap this i have done it with l2tp/ipsec, i will post what i have done in another thread