Connection between two IPsec vpnserver!THANK YOU!

Post your questions about SoftEther VPN software here. Please answer questions if you can afford.
Post Reply
zedyasuo
Posts: 12
Joined: Mon May 11, 2020 7:42 am

Connection between two IPsec vpnserver!THANK YOU!

Post by zedyasuo » Mon May 11, 2020 7:59 am

Hi everyone,

I want to make an IPsec establishment between two vpnservers(rather than vpnclient-vpnserver normally),

I enabled "L2TP over IPsec Server Function" by using vpncmd->IPsecEnable in both SoftEther VPNs

But I don't know how to let either start a IPsec connection targeted the other one,

Or maybe the vpnserver doesn't support this,

Anyone Know this?

I will thank you very much!!!!!

Yours

centeredki69
Posts: 329
Joined: Wed Sep 18, 2013 1:49 pm

Re: Connection between two IPsec vpnserver!THANK YOU!

Post by centeredki69 » Mon May 11, 2020 10:48 pm

A "SE-Server" or "SE-Bridge" can only make outbound connections using the "Cassade Connection" option which uses the SE- Ethernet over SSL protocol. The casscade connection is designed to connect SE- Servers or SE- Bridges and SE- Servers to each other.
https://www.softether.org/4-docs/2-howt ... Bridge_VPN
https://www.softether.org/4-docs/1-manu ... L2_Bridge)
https://www.softether.org/4-docs/1-manu ... P_Routing)
However the SE-Server can "receive" connections from various protocols. SE-over SSL, OpenVPN, MS-SSTP, L2Tp/IPsec.
https://www.softether.org/@api/deki/files/4/=1.2.jpg

zedyasuo
Posts: 12
Joined: Mon May 11, 2020 7:42 am

Re: Connection between two IPsec vpnserver!THANK YOU!

Post by zedyasuo » Tue May 12, 2020 1:53 am

Aha, It's excited to get your reply, centeredki69.
Thank you!!!!
I will try "cascade function"!!!
Thank you again!!!

zedyasuo
Posts: 12
Joined: Mon May 11, 2020 7:42 am

Re: Connection between two IPsec vpnserver!THANK YOU!

Post by zedyasuo » Thu May 14, 2020 6:04 am

Hi, man,
I want to use vpncmd to config "cascade connection" between SE- Servers and SE- Bridges, as I don't have a Windows GUI environment
I saw some commands start with "Cascade" such as "CascadeCreate","CascadeList","CascadeGet","CascadeSet" and so on in vpncmd.
I have tried some commands above, but sadly, I failed to create a "cascade connection".

I read some documents about vpncmd in https://www.softether.org/
But I don't know the exact steps to create a "cascade connection" within vpncmd

Could you tell me how to do that? Or give me the weblink of documents about "create a cascade connection within vpncmd".

Thank you very much!!!

Regards.

zedyasuo
Posts: 12
Joined: Mon May 11, 2020 7:42 am

Re: Connection between two IPsec vpnserver!THANK YOU!

Post by zedyasuo » Tue May 19, 2020 1:41 am

Hey man, Here I come again, lol.
I have set up a layer-2 "Cascade Connection" like the attachment:
cascade.png
My question is : How can I start a "IPsec Connection" through the "Cascade Connection"?

I have tried the followings: Before I start the "Cascade Connection", I set "IPsecEnable->L2TP over IPsec" the value of "yes".
Then I start "Cascade Connection".
However, it seems the established "Cascade Connection" is still a normal "Cascade Connection". It wasn't a "L2Tp/IPsec" connection.

Anyone Know this?

I will thank you very much!!!!!

Yours
You do not have the required permissions to view the files attached to this post.

centeredki69
Posts: 329
Joined: Wed Sep 18, 2013 1:49 pm

Re: Connection between two IPsec vpnserver!THANK YOU!

Post by centeredki69 » Tue May 19, 2020 6:20 pm

The L2TP/IPsec feature on SE-server is only for RECEIVING connection from L2TP/IPsec supported clients/devices. (Windows , Iphone. Android, MAC or 3rd party clients.) I believe ""IPsecEnable->L2TP over IPsec" the value of "yes"." activates this feature so the SE-Server can function as a L2tp/Ipsec SERVER (Receive connections). The "SE-Server", "SE-Bridge" or "SE-client" software ONLY uses the SE- Ethernet over SSL protocol to make OUTBOUND connections. They DO NOT use the L2TP/IPsec protocols to make OUTBOUND connections. If you insist on using the L2TP/IPsec protocols to connect the 2 locations you will need to find some other software to make the connection to the SE-Server. However, the cascaded connection you created is already an Secure/Encrypted connection. I'm not sure why the other protocol is required.

zedyasuo
Posts: 12
Joined: Mon May 11, 2020 7:42 am

Re: Connection between two IPsec vpnserver!THANK YOU!

Post by zedyasuo » Wed May 20, 2020 1:34 am

Hey, centeredki69:
I got your means.
Thank you very much!
lol

Yours

Post Reply