Apoyar Network & VPN Structure: Difference between revisions

no edit summary
No edit summary
No edit summary
Line 168: Line 168:
When OpenBSD creates connection, it sends cert
When OpenBSD creates connection, it sends cert


When firewall.apoyar which will be in clavister finds out this, it checks weather it is matching or not, if it’s matching then only VPN connection get created.
When firewall.apoyar which will be in clavister finds out this, it checks weather it is matching or not, if it’s matching then only VPN connection get started.
 
 
Accessing Apoyar Clavister
--------------------------
 
 
Go to below URL
 
https://pfa.apoyar.net
 
Login with Admin logins
 
Once logged in, to see the tunnels created go to
 
- Network
 
- IPsec (Under VPN & Tunnels)
 
Here u can see all the tunnels created
 
 
Also to check IPsec status, go to
 
- Status
 
- IPsec (Under Sub Systems)
 
 
Note – Same as Apoyar, WG Clavister we can access using below URL’s
 
https://pfa.wise-geary.co.uk – Public Access
 
https://pfa.wise.apoyar – Internal Access
 
Apoyar Certificate’s
---------------------
 
 
We are not using public certificates anymore, we are using our own pool and we are generating the certificates.
 
We can see those certificate status in Nagios, service groups (under SSL Expiry)