175
edits
No edit summary |
No edit summary |
||
| Line 168: | Line 168: | ||
When OpenBSD creates connection, it sends cert | When OpenBSD creates connection, it sends cert | ||
When firewall.apoyar which will be in clavister finds out this, it checks weather it is matching or not, if it’s matching then only VPN connection get created. | When firewall.apoyar which will be in clavister finds out this, it checks weather it is matching or not, if it’s matching then only VPN connection get started. | ||
Accessing Apoyar Clavister | |||
-------------------------- | |||
Go to below URL | |||
https://pfa.apoyar.net | |||
Login with Admin logins | |||
Once logged in, to see the tunnels created go to | |||
- Network | |||
- IPsec (Under VPN & Tunnels) | |||
Here u can see all the tunnels created | |||
Also to check IPsec status, go to | |||
- Status | |||
- IPsec (Under Sub Systems) | |||
Note – Same as Apoyar, WG Clavister we can access using below URL’s | |||
https://pfa.wise-geary.co.uk – Public Access | |||
https://pfa.wise.apoyar – Internal Access | |||
Apoyar Certificate’s | |||
--------------------- | |||
We are not using public certificates anymore, we are using our own pool and we are generating the certificates. | |||
We can see those certificate status in Nagios, service groups (under SSL Expiry) | |||