

etc/crets, which in turn on a modular system containsĬonnection definition is needed for each remote network to access.Ī LibreSwan connection definition does not use the terms 'source' or 'destination'. In parallel there is a secrets file containing the PSK: Usually it is a modular configuration, indicated by the content of the configuration file nf as: In this example the Pre-Shared-Key (PSK) and IKEv2 are used.ĭepending on the system the whole configuration is found in /etc/nf but the configuration should be similar. LibreSwan is an open source implementation that can help to built up an IPSec tunnel between a node and the FortiGate. This article describes how to setup a site-to-site (s2s) tunnel with LibreSwan and a FortiGate.
