- ... Daemons1.1
- More on ISAMKP later
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
- ... side2.1
- Hint: It is possible to use pure IPsec with windows, without L2TP
and PPP, but as you couldn't use the standard VPN-client but a console-tool,
we will avoid this solution due to end-user confusion. Security doesn't
suffer by using the PPP-L2TP-IPsec Solution, as IPsec is the outermost
protocol, that will be actually transported over the wire.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
- ...2.2
- How often do we read this?
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
- ...options.l2tpd2.3
- This file is mentioned in the l2tpd.conf file, and defines the options
for pppd
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
- ... warrior2.4
- A road warrior is usually a laptop, that is 'on the road', and connects
to the VPN from anywhere. These mobile computers have to be secured
very well, as they might pose an invisible threat to the network if
someone gains access to these laptops
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
- ... Account2.5
- It is important to import the certificate for the computer, as windows
doesn't use the certificate otherwise. If you do only want the certificate
be based on user-level, you will have to figure out some other method
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
- ... certificates2.6
- I think that is pretty funny; Well done, Microsoft.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
- ... working2.7
- Working in this sense means: Providing a working VPN-Server.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
- ... encrypted2.8
-
-
- gpg -symmetric -cipher-algo 3DES -output ca.tar.bz2.gpg ca.tar.bz2
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.