Set ipsec using netsh advfirewall


i need convert following 3des aes128 windows2008 r2

netsh ipsec static add policy ipsec-windows2008r2 mmpfs=no qmpermm=0 mmlifetime=1440 activatedefaultrule=no assign=no mmsecmethods="3de-sha1-2"
netsh ipsec static add filterlist name="ipsec-windows2008r2" description="ipsec-windows2008r2"
netsh ipsec static add filter filterlist="ipsec-windows2008r2"  srcaddr=192.168.76.7 dstaddr=192.168.76.9 protocol=any mirrored=yes
netsh ipsec static add filteraction name="ipsec-windows2008r2" qmpfs=yes inpass=no soft=no action=negotiate qmsecmethods="esp[3des,sha1]:1000000k/3600s"
netsh ipsec static add rule name="ipsec-windows2008r2" policy="ipsec-windows2008r2" filterlist="ipsec-windows2008r2" filteraction="ipsec-windows2008r2" conntype=all kerberos=no psk=complex-secret-name

first command fails with:

netsh ipsec static add policy ipsec-windows2008r2 mmpfs=no qmpermm=0 mmlifetime=1440 activatedefaultrule=no assign=no mmsecmethods="aes128-sha1-2"
err ipsec[01033] : invalid mmoffer specified

hi,

from error code, indicates mm values not accepted os.

http://technet.microsoft.com/en-us/library/cc725926(v=ws.10).aspx#bkmk_add_policy

please follow instructions correct it.

regards,

mike


please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community members reading thread.



Windows Server  >  Security



Comments

Popular posts from this blog

Error: 0x80073701 when trying to add Print Services Role in Windows 2012 Standard

Disconnecting from a Windows Server 2012 R2 file sharing session on a Windows 7,8,10 machine

Windows 2016 RDS event 1306 Connection Broker Client failed to redirect the user... Error: NULL