Set ipsec using netsh advfirewall
i need convert following 3des aes128 windows2008 r2
netsh ipsec static add policy ipsec-windows2008r2 mmpfs=no qmpermm=0 mmlifetime=1440 activatedefaultrule=no assign=no mmsecmethods="3de-sha1-2"
netsh ipsec static add filterlist name="ipsec-windows2008r2" description="ipsec-windows2008r2"
netsh ipsec static add filter filterlist="ipsec-windows2008r2" srcaddr=192.168.76.7 dstaddr=192.168.76.9 protocol=any mirrored=yes
netsh ipsec static add filteraction name="ipsec-windows2008r2" qmpfs=yes inpass=no soft=no action=negotiate qmsecmethods="esp[3des,sha1]:1000000k/3600s"
netsh ipsec static add rule name="ipsec-windows2008r2" policy="ipsec-windows2008r2" filterlist="ipsec-windows2008r2" filteraction="ipsec-windows2008r2" conntype=all kerberos=no psk=complex-secret-name
first command fails with:
netsh ipsec static add policy ipsec-windows2008r2 mmpfs=no qmpermm=0 mmlifetime=1440 activatedefaultrule=no assign=no mmsecmethods="aes128-sha1-2"
err ipsec[01033] : invalid mmoffer specified
hi,
from error code, indicates mm values not accepted os.
http://technet.microsoft.com/en-us/library/cc725926(v=ws.10).aspx#bkmk_add_policy
please follow instructions correct it.
regards,
mike
please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community members reading thread.
Windows Server > Security
Comments
Post a Comment