... Daemons1.1
More on ISAMKP later
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
... side2.1
Hint: It is possible to use pure IPsec with windows, without L2TP and PPP, but as you couldn't use the standard VPN-client but a console-tool, we will avoid this solution due to end-user confusion. Security doesn't suffer by using the PPP-L2TP-IPsec Solution, as IPsec is the outermost protocol, that will be actually transported over the wire.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
...2.2
How often do we read this?
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
...options.l2tpd2.3
This file is mentioned in the l2tpd.conf file, and defines the options for pppd
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
... warrior2.4
A road warrior is usually a laptop, that is 'on the road', and connects to the VPN from anywhere. These mobile computers have to be secured very well, as they might pose an invisible threat to the network if someone gains access to these laptops
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
... Account2.5
It is important to import the certificate for the computer, as windows doesn't use the certificate otherwise. If you do only want the certificate be based on user-level, you will have to figure out some other method
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
... certificates2.6
I think that is pretty funny; Well done, Microsoft.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
... working2.7
Working in this sense means: Providing a working VPN-Server.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
... encrypted2.8
gpg -symmetric -cipher-algo 3DES -output ca.tar.bz2.gpg ca.tar.bz2
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.
.