Home
strongSwan IPsec VPN Client for Android 4.0 User Manual
Contents
1. You can press Cancel to abort the connection attempt After the VPN Tunnel is estab lished a bell sound is played and the status will be changed to Connected strongSwan VPN Client OVERVIEW Status Profile Example Profile DIXAN Profiles Example Profile Gateway vpn example com Username jrandomhacker Add new profile If you wish to terminate the VPN at any time press the Disconnect button A small key icon in the notification area at the top of the screen indicates that a VPN connection is active even if the strongSwan app is not visible If you open the notification you can see more details about the currently active connection Session Example Profile Duration 00 07 37 Sent 10771 bytes 124 packets Received 11882 bytes 61 packets Cancel Disconnect If an error occurred and the VPN could not be established a message will pop up describing the error e g A Failed to initiate VPN tunnel Gateway unreachable OK If you are looking for more detailed information about an error you can also take a look at the log messages generated by strongSwan see section 5 4 Editing or Deleting a Profile In order to edit an existing VPN profile press on the profile you wish to edit and hold until your device vibrates A small dialog will pop up Delete You can choose to either delete or edit the profile If you press Edit the profile detail view will show up There you can edit al
2. QuoVadis Limited QuoVadis Root CA 2 QuoVadis Limited QuoVadis Root CA 3 QuoVadis Limited QuoVadis Root Certification Authority RSA Security Inc RSA Security 2048 V3 SECOM Trust Systems CO LTD Security Communication EV RootCA1 QuoVadis Limited QuoVadis Root CA 2 Cancel Save When you have filled in all the necessary fields you can save the profile by pressing the Save button Otherwise you will be prompted to enter the missing information as shown below strongSwan VPN Client Profile name optional Example Profile Gateway Username Please enter the gateway address here jrandomha Password optional CA certificate Select automatically Cancel You can then adjust the missing parameter and press the Save button again After you have successfully created a new VPN profile it will show up in the list of profiles strongSwan VPN Client OVERVIEW Status No active VPN Profiles Example Profile Gateway vpn example com Username jrandomhacker Add new profile 3 Starting a VPN Connection After you created a profile you can activate the profile simply by tapping it If you did not enter your password when you created the profile you will be asked to enter it now Username ME OE G Password Cancel Then a dialog will pop up while strongSwan tries to establish the connection to the VPN gateway Establishing VPN tunnel with ypn example com Cancel
3. e traffic selectors in order to see what traffic is sent over the tunnel To return to the Overview you can use the tabs or swipe the screen again in the opposite direction 11 6 Installing your own CA Certificates If you have your own CA certificate that you want to use with the strongSwan VPN client you have to install it as a trusted certificate on the device In order to do that you need to copy the DER encoded certificate onto your SD card Note that the file name of the certificate needs a cer ending otherwise it will not be recognized by Android After you have inserted the SD card go to Settings Security Credential Storage Install from SD card If you do not yet have a pin or screen lock pattern set for your device you will be prompted to configure one now Afterwards the certificate will be installed on the device You will then be able to see the certificate when editing a VPN profile 12
4. l the parameters of the profile See also section 2 After you finished editing the profile press the Save button to adapt your changes or press Cancel if you want to discard the changes 10 5 Reading the Logs If you are an expert and want to read the logs generated by strongSwan select the Log tab or swipe horizontally over the screen of your device strongSwan VPN Client OVERVIEW LOG KE server requested EAP_MSCHAPV2 authentication id 3 EAP RE 190 119 34 from 152 96 1 40 4500 to from 152 96 1 40 4500 to parsed qe EAP SUCC EAP method gt MS eded MSK established authentication of g elf with EAP genera E from 10 208 190 119 34312 to from 152 96 1 40 4500 to N ADD_4_ADDR N ADD_4_ADDR N ADD_4_ 95 IKE authentication of strongswan hsr ch with EAP 1l 95 IKE IKE_SA android 6 established be n 10 208 190 119 ssi 152 9 AO st gswan hsr ch 95 IKE schedul rekeying in 95 IKE maximum IKE_SA lifetime 95 LIB builder adding DNS server 1 95 CFG handling INTERNAL_IP4_NBNS 2 95 IKE installing w 95 IKE CHILD_S droid 3 48da3d56_1i cbcf7b6a_o and TS 172 16 builder adding interface addre builder adding route 0 0 0 0 1 builder adding route 128 0 0 0 1 builder setting MTU to 14 builder building TUN device peer supports MOBIKE sending keep alive The log view automatically scrolls to the latest log message You can use the log for example to diagnose problems or to look at th
5. stname or IP address of the gateway you wish to connect to Username Your username EAP Password Your password for the EAP MD5 or EAP MSCHAPv2 authentication You can choose not to enter the password In that case you will be asked to enter your password on each attempt to start the VPN connection CA Certificate The CA certificate which is used for the gateway authentication You can either let strongSwan automatically pick the CA certificatel that is needed to authenticate the gateway or you can manually select the one to be used Note that in case you choose Select automatically strongSwan sends a certificate request for every CA certificate installed on the device to the gateway which may be slow or cause problems with packet fragmentation If you choose to select the CA certificate manually you can select it from the drop down menu that will show up Note that per default only certificates that were manually installed by the user are shown If you want to see the pre installed CA certificates as well select Show all certificates See section 6 on how to install your own certificate on the device Expressz Class C Tanusitvanykiado NetLock Halozatbiztonsagi Kft NetLock Kozjegyzoi Class A Tanusitvanykiado NetLock Halozatbiztonsagi Kft NetLock Uzleti Class B Tanusitvanykiado NetLock Kft NetLock Arany Class Gold F tan s tv ny Network Solutions L L C Network Solutions Certificate Authority PM SGDN IGC A
6. strongswan Psec VPN Client for Android 4 0 User Manual June 15 2012 Contents 1 Introduction Creating a VPN Profile Starting a VPN Connection Editing or Deleting a Profile Reading the Logs Installing your own CA Certificates 10 11 12 1 Introduction strongSwan VPN Client OVERVIEW Status No active VPN Profiles Add new profile a When the strongSwan VPN client is started on the device the first thing you will see is the overview screen It is divided into three sections the navigation bar at the top the status section right below and the list of profiles which is initially empty at the bottom The navigation bar lets you switch between the overview and the log view The status section indicates whether or not a VPN is currently established Read the next section to learn how to create a new VPN profile 2 Creating a VPN Profile You can add a new profile by pressing the Add new profile button at the bottom of the screen A new view will pop up where you can enter the settings for the new profile strongSwan VPN Client Profile name optional Gateway Username Password optional CA certificate Select automatically Cancel Profile name This is the profile name which will be shown on the overview It is only used locally and can be chosen freely If you leave this field blank the Gateway address is used as name for the profile Gateway This is the address ho
Download Pdf Manuals
Related Search
Related Contents
Uniden TRU5885 Owner's Manual Digital Phosphor Oscilloscope - TDS5034B, TDS5054B LE MANUEL D`UTILISATION KOYOT 2 AX SERIES Nokia Asha 210 User Guide para uso del personal invertidor de tipo split manual de instalación Pyramid Technologies 7000 Series User's Manual Genica GN-675VA User's Manual AWS 900+. - Ryerson University Copyright © All rights reserved.
Failed to retrieve file