StrongSwan: Difference between revisions

Major rework for new VICI framework underway. Finished to 'Configuring Windows'
m Installing the certificates: Small changes/tidying up
Line 211: Line 211:
== Installing the certificates ==
== Installing the certificates ==


Before we can install the certificate, the .p12 file we generated earlier must be copied locally to the computer it will be installed on. They don't seem to install properly when you try installing from a network share.
Before we can install the certificate, the .p12 file we generated earlier must be copied locally to the computer it will be installed on.


Remember that each client must have its own certificate generated. Certificates should not be reused for other machines.
Remember that each client must have its own certificate generated. Certificates should not be reused for other machines.
Line 226: Line 226:
* On the "Completing the Certificate Import Wizard" page, click Finish. You should get a prompt saying the import was successful. This will complete the import.
* On the "Completing the Certificate Import Wizard" page, click Finish. You should get a prompt saying the import was successful. This will complete the import.


For the certificates to be found by the VPN client, they must be installed in the Computer store, not the User store. Hence, make sure the "Store Location" is changed from Current User to Local Machine.
For the certificates to work correctly with the VPN server, they must be installed in the Computer store, not the User store. Hence, make sure the "Store Location" is changed from Current User to Local Machine.


== Making the VPN profile ==
== Making the VPN profile ==