<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="de">
	<id>https://wiki.securepoint.de/index.php?action=history&amp;feed=atom&amp;title=UTM%2FCLI%2FIpsec_v11.8</id>
	<title>UTM/CLI/Ipsec v11.8 - Versionsgeschichte</title>
	<link rel="self" type="application/atom+xml" href="https://wiki.securepoint.de/index.php?action=history&amp;feed=atom&amp;title=UTM%2FCLI%2FIpsec_v11.8"/>
	<link rel="alternate" type="text/html" href="https://wiki.securepoint.de/index.php?title=UTM/CLI/Ipsec_v11.8&amp;action=history"/>
	<updated>2026-04-22T01:33:21Z</updated>
	<subtitle>Versionsgeschichte dieser Seite in Securepoint Wiki</subtitle>
	<generator>MediaWiki 1.43.5</generator>
	<entry>
		<id>https://wiki.securepoint.de/index.php?title=UTM/CLI/Ipsec_v11.8&amp;diff=91845&amp;oldid=prev</id>
		<title>Lauritzl: Die Seite wurde neu angelegt: „{{Archivhinweis|UTM/CLI/Ipsec}} {{Set_lang}}   {{#vardefine:headerIcon|spicon-utm}}  {{var	| display 	| CLI-Befehl: ipsec 	| CLI command: ipsec }} {{var	| head 	| Syntax des CLI-Befehls &#039;&#039;ipsec&#039;&#039; für IPSec-VPN Verbidnugen 	| Syntax of the CLI command &#039;&#039;ipsec&#039;&#039; for IPSec VPN connections }} {{var	| Parameter mit mehreren Werten 	| Werden für einen Parameter mehrere Werte übergeben, müssen die Werte in eckigen Klammern mit einem Leerzeichen(!) Abstand &#039;&#039;…“</title>
		<link rel="alternate" type="text/html" href="https://wiki.securepoint.de/index.php?title=UTM/CLI/Ipsec_v11.8&amp;diff=91845&amp;oldid=prev"/>
		<updated>2024-06-05T08:08:55Z</updated>

		<summary type="html">&lt;p&gt;Die Seite wurde neu angelegt: „{{Archivhinweis|UTM/CLI/Ipsec}} {{Set_lang}}   {{#vardefine:headerIcon|spicon-utm}}  {{var	| display 	| CLI-Befehl: ipsec 	| CLI command: ipsec }} {{var	| head 	| Syntax des CLI-Befehls &amp;#039;&amp;#039;ipsec&amp;#039;&amp;#039; für IPSec-VPN Verbidnugen 	| Syntax of the CLI command &amp;#039;&amp;#039;ipsec&amp;#039;&amp;#039; for IPSec VPN connections }} {{var	| Parameter mit mehreren Werten 	| Werden für einen Parameter mehrere Werte übergeben, müssen die Werte in eckigen Klammern mit einem Leerzeichen(!) Abstand &amp;#039;&amp;#039;…“&lt;/p&gt;
&lt;p&gt;&lt;b&gt;Neue Seite&lt;/b&gt;&lt;/p&gt;&lt;div&gt;{{Archivhinweis|UTM/CLI/Ipsec}}&lt;br /&gt;
{{Set_lang}}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{#vardefine:headerIcon|spicon-utm}}&lt;br /&gt;
&lt;br /&gt;
{{var	| display&lt;br /&gt;
	| CLI-Befehl: ipsec&lt;br /&gt;
	| CLI command: ipsec }}&lt;br /&gt;
{{var	| head&lt;br /&gt;
	| Syntax des CLI-Befehls &amp;#039;&amp;#039;ipsec&amp;#039;&amp;#039; für IPSec-VPN Verbidnugen&lt;br /&gt;
	| Syntax of the CLI command &amp;#039;&amp;#039;ipsec&amp;#039;&amp;#039; for IPSec VPN connections }}&lt;br /&gt;
{{var	| Parameter mit mehreren Werten&lt;br /&gt;
	| Werden für einen Parameter mehrere Werte übergeben, müssen die Werte in eckigen Klammern mit einem Leerzeichen(!) Abstand &amp;#039;&amp;#039;&amp;#039;[&amp;amp;emsp;&amp;#039;&amp;#039;&amp;#039; angegeben werden. Beispiel: {{code|interface zone set id 4711 flags [ POLICY_IPSEC PPP_VPN ]}}&lt;br /&gt;
	| If several values are passed for one parameter, the values must be specified in square brackets with a space(!) between &amp;#039;&amp;#039;&amp;#039;[&amp;amp;emsp;&amp;#039;&amp;#039;&amp;#039;. Example: {{code|interface zone set id 4711 flags [ POLICY_IPSEC PPP_VPN ]}} }}&lt;br /&gt;
{{var	| Parameter ohne Werte&lt;br /&gt;
	| Sollen keine Werte für einen Parameter übergeben werden, müssen zwei eckige Klammern verwendet werden. Beispiel {{code|interface set name LAN1 flags [ ]}}&lt;br /&gt;
	| If no values are to be passed for a parameter, two square brackets must be used. Example {{code|interface set name LAN1 flags [ ]}} }}&lt;br /&gt;
{{var	| Befehl&lt;br /&gt;
	| Befehl&lt;br /&gt;
	| Command }}&lt;br /&gt;
{{var	| Parameter&lt;br /&gt;
	| Parameter&lt;br /&gt;
	| Parameter }}&lt;br /&gt;
{{var	| Beispiel&lt;br /&gt;
	| Beispiel&lt;br /&gt;
	| Example }}&lt;br /&gt;
{{var	| Erlaubte Werte&lt;br /&gt;
	| Erlaubte Werte:&lt;br /&gt;
	| Permitted values: }}&lt;br /&gt;
{{var	| ipsec new--desc&lt;br /&gt;
	| Erstellen einer neuen IPSec-VPN Verbindung&lt;br /&gt;
	| Create a new IPSec VPN connection }}&lt;br /&gt;
{{var	| preshared key--desc&lt;br /&gt;
	| Preshared key zb.B.: {{whitebox|geheim}}&lt;br /&gt;
	| Preshared key e.g.: {{whitebox|secret}} }}&lt;br /&gt;
{{var	| local_subnet--desc&lt;br /&gt;
	| Lokales Subnetz für den Tunnel. IP-Adresse mit Subnetzmaske&lt;br /&gt;
	| Local subnet for the tunnel. IP address with subnet mask }}&lt;br /&gt;
{{var	| remote_subnet--desc&lt;br /&gt;
	| Remote Subnetz für den Tunnel. IP-Adresse mit Subnetzmaske&lt;br /&gt;
	| Remote subnet for the tunnel. IP address with subnet mask }}&lt;br /&gt;
{{var	| remote_subnet_within--desc&lt;br /&gt;
	| L2TP Subnetz in Phase2 (Wird i.d.R. automatisch gesetzt)&lt;br /&gt;
	| L2TP subnet in phase 2 (usually set automatically) }}&lt;br /&gt;
{{var	| local--desc&lt;br /&gt;
	| Lokale Schnittstelle oder IP-Adresse&lt;br /&gt;
	| Local interface or IP address }}&lt;br /&gt;
{{var	| remote--desc&lt;br /&gt;
	| Remote Schnittstelle oder IP-Adresse&lt;br /&gt;
	| Remote interface or IP address }}&lt;br /&gt;
{{var	| 1=local_id--desc&lt;br /&gt;
	| 2=Local Gateway ID (&amp;lt;nowiki&amp;gt;=&amp;lt;/nowiki&amp;gt;local wenn keine Angabe)&lt;br /&gt;
	| 3=Local Gateway ID (&amp;lt;nowiki&amp;gt;=&amp;lt;/nowiki&amp;gt;local if not specified) }}&lt;br /&gt;
{{var	| 1=remote_id--desc&lt;br /&gt;
	| 2=Remote Gateway ID (&amp;lt;nowiki&amp;gt;=&amp;lt;/nowiki&amp;gt;remote wenn keine Angabe)&lt;br /&gt;
	| 3=Remote Gateway ID (&amp;lt;nowiki&amp;gt;=&amp;lt;/nowiki&amp;gt;remote if not specified) }}&lt;br /&gt;
{{var	| ike--desc&lt;br /&gt;
	| ike chipher (Default: aes128-sha2_256-modp2048)&lt;br /&gt;
	| ike chipher (Default: aes128-sha2_256-modp2048) }}&lt;br /&gt;
{{var	| esp--desc&lt;br /&gt;
	| esp chipher (Default: aes128-sha2_256)&lt;br /&gt;
	| esp chipher (Default: aes128-sha2_256) }}&lt;br /&gt;
{{var	| nexthop--desc&lt;br /&gt;
	| Adresse oder Interface&lt;br /&gt;
	| Address or interface }}&lt;br /&gt;
{{var	| ipsec set--desc&lt;br /&gt;
	| Ändern einer IPSec-VPN Verbindung&lt;br /&gt;
	| Changing an IPSec VPN Connection }}&lt;br /&gt;
{{var	| Parameter-identisch--desc&lt;br /&gt;
	| Die weiteren Paramter und ihre Syntax sind identisch mit dem Befehl &lt;br /&gt;
	| The other parameters and their syntax are identical to the command  }}&lt;br /&gt;
{{var	| ipsec get--desc&lt;br /&gt;
	| Auflistung der eingerichteten IPSec-VPN Verbindungen.&amp;lt;br&amp;gt;Der Parameter &amp;#039;&amp;#039;id&amp;#039;&amp;#039; ist erforderlich.&lt;br /&gt;
	| Listing of the established IPSec VPN connections.&amp;lt;br&amp;gt;The parameter &amp;#039;&amp;#039;id&amp;#039;&amp;#039; is required. }}&lt;br /&gt;
{{var	| ipsec delete--desc&lt;br /&gt;
	| Löschen einer IPSec-VPN Verbindung&lt;br /&gt;
	| Deleting an IPSec VPN Connection }}&lt;br /&gt;
{{var	| ipsec restart--desc&lt;br /&gt;
	| Neustarten einer IPSec-VPN Verbindung&lt;br /&gt;
	| Restarting an IPSec VPN connection }}&lt;br /&gt;
{{var	| ipsec update--desc&lt;br /&gt;
	| IPSec-VPN Konfiguration neu laden&lt;br /&gt;
	| Reload IPSec VPN configuration }}&lt;br /&gt;
{{var	| ipsec status--desc&lt;br /&gt;
	| Ausgabe der IPSec Status-Informationen &lt;br /&gt;
	| Output of IPSec status information  }}&lt;br /&gt;
{{var	| ipsec subnet new--desc&lt;br /&gt;
	| Hinzufügen eines neuen Subnetzes zu einer IPSec Verbindung.&amp;lt;br&amp;gt;&amp;#039;&amp;#039;id&amp;#039;&amp;#039; entspricht der id der IPSec-Verbindung (ipsec get)&lt;br /&gt;
	| Adding a new subnet to an IPSec connection.&amp;lt;br&amp;gt;&amp;#039;&amp;#039;id&amp;#039;&amp;#039; corresponds to the id of the IPSec connection (ipsec get) }}&lt;br /&gt;
{{var	| ipsec subnet set--desc&lt;br /&gt;
	| Ändern eines IPSec Subnetzes. subnet_id ist die id des Subnetzes&lt;br /&gt;
	| Change an IPSec subnet. subnet_id is the id of the subnet. }}&lt;br /&gt;
{{var	| ipsec subnet delete--desc&lt;br /&gt;
	| Löschen eines IPSec Subnetzes.&lt;br /&gt;
	| Delete an IPSec subnet. }}&lt;br /&gt;
{{var	| local_auth--desc&lt;br /&gt;
	| &lt;br /&gt;
	|  }}&lt;br /&gt;
{{var	| authobj--desc&lt;br /&gt;
	| Name des x.509 Zertifikats oder des RSA-Schlüssels zur Identifizierung&lt;br /&gt;
	| Name of the x.509 certificate or the RSA key for identification }}&lt;br /&gt;
{{var	| &lt;br /&gt;
	| &lt;br /&gt;
	|  }}&lt;br /&gt;
{{var	| &lt;br /&gt;
	| &lt;br /&gt;
	|  }}&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
----&lt;br /&gt;
{{var	| &lt;br /&gt;
	| &lt;br /&gt;
	|  }}&lt;br /&gt;
&lt;br /&gt;
&amp;lt;/div&amp;gt;{{DISPLAYTITLE:{{#var:display}} }}{{Select_lang}}{{TOC2}}&lt;br /&gt;
&amp;#039;&amp;#039;&amp;#039;{{#var:head}}&amp;#039;&amp;#039;&amp;#039;&lt;br /&gt;
&lt;br /&gt;
{{#var:ver}} 11.8.12 &amp;lt;small&amp;gt;(02.2021)&amp;lt;/small&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{{#var:prev}} [[UTM/CLI/Ipsec_v11.7 | 11.7]]&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ul&amp;gt;&lt;br /&gt;
&amp;lt;li class=&amp;quot;list--element__alert list--element__hint&amp;quot;&amp;gt;{{#var:Parameter mit mehreren Werten}}&amp;lt;/li&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
&amp;lt;li class=&amp;quot;list--element__alert list--element__hint&amp;quot;&amp;gt;{{#var:Parameter ohne Werte}}&amp;lt;/li&amp;gt;&lt;br /&gt;
&amp;lt;/ul&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&lt;br /&gt;
{| class=&amp;quot;sptable2 pd5 sortable&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
! {{#var:Befehl}} !! {{#var:Parameter}} !! {{#var:desc}} !! {{#var:Beispiel}}&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| {{h3|ipsec get}}ipsec get&lt;br /&gt;
| -&lt;br /&gt;
| {{#var:ipsec get--desc}}&lt;br /&gt;
| {{code|ipsec get}}&lt;br /&gt;
|- class=&amp;quot;Leerzeile&amp;quot;&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| rowspan=&amp;quot;18&amp;quot; | {{h3|ipsec new}}ipsec new&lt;br /&gt;
| ike_version &lt;br /&gt;
| {{#var:ipsec new--desc}}&amp;lt;br&amp;gt;{{#var:Erlaubte Werte}} {{whitebox|IKEv1, IKEv2}}&lt;br /&gt;
| rowspan=&amp;quot;18&amp;quot; | {{code|ipsec new ike_version &amp;quot;IKEv1&amp;quot; local_auth &amp;quot;PSK&amp;quot; remote_auth &amp;quot;PSK&amp;quot; local_secret &amp;quot;geheim&amp;quot; remote_secret &amp;quot;geheim&amp;quot; local_subnet &amp;quot;192.168.10.0/24&amp;quot; remote_subnet &amp;quot;192.168.20.0/24&amp;quot; local &amp;quot;184.173.97.210&amp;quot; remote &amp;quot;62.116.166.66&amp;quot; flags [ ADD DPD ]}}&lt;br /&gt;
|-&lt;br /&gt;
| local_auth || {{#var:Erlaubte Werte}} {{whitebox|PSK, RSASIG}}&lt;br /&gt;
|-&lt;br /&gt;
| remote_auth || {{#var:Erlaubte Werte}} {{whitebox|PSK, RSASIG}}&lt;br /&gt;
|-&lt;br /&gt;
| local_secret || {{#var:preshared key--desc}}&lt;br /&gt;
|-&lt;br /&gt;
| remote_secret || {{#var:preshared key--desc}}&lt;br /&gt;
|-&lt;br /&gt;
| local_authobj || {{#var:authobj--desc}}&lt;br /&gt;
|-&lt;br /&gt;
| remote_authobj || {{#var:authobj--desc}}&lt;br /&gt;
|-&lt;br /&gt;
| local_subnet || {{#var:local_subnet--desc}}&lt;br /&gt;
|-&lt;br /&gt;
| remote_subnet || {{#var:remote_subnet--desc}}&lt;br /&gt;
|-&lt;br /&gt;
| remote_subnet_within || {{#var:remote_subnet_within--desc}}&lt;br /&gt;
|-&lt;br /&gt;
| local || {{#var:local--desc}}&lt;br /&gt;
|-&lt;br /&gt;
| remote || {{#var:remote--desc}}&lt;br /&gt;
|-&lt;br /&gt;
| local_id || {{#var:local_id--desc}}&lt;br /&gt;
|-&lt;br /&gt;
| remote_id || {{#var:remote_id--desc}}&lt;br /&gt;
|-&lt;br /&gt;
| ike || {{#var:ike--desc}}&lt;br /&gt;
|-&lt;br /&gt;
| esp || {{#var:esp--desc}}&lt;br /&gt;
|-&lt;br /&gt;
| flags || {{#var:Erlaubte Werte}} {{whitebox|ADD, START, ROUTE, IGNORE, DPD, NOPFS, LOCAL_SRC_ADDR, REMOTE_SRC_ADDR, XAUTH, L2TP}}&lt;br /&gt;
|-&lt;br /&gt;
| nexthop || {{#var:nexthop--desc}}&lt;br /&gt;
|- class=&amp;quot;Leerzeile&amp;quot;&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| rowspan=&amp;quot;2&amp;quot; | {{h3|ipsec set}}ipsec set &lt;br /&gt;
| id&lt;br /&gt;
| {{#var:ipsec set--desc}}&lt;br /&gt;
| rowspan=&amp;quot;2&amp;quot; | {{code|ipsec set ike_version &amp;quot;ikev1&amp;quot; local_auth &amp;quot;PSK&amp;quot; remote_auth &amp;quot;PSK&amp;quot; local_secret &amp;quot;geheim&amp;quot; remote_secret &amp;quot;geheim&amp;quot; local_subnet &amp;quot;192.168.10.0/24&amp;quot; remote_subnet &amp;quot;192.168.20.0/24&amp;quot; local &amp;quot;184.173.97.210&amp;quot; remote &amp;quot;62.116.166.66&amp;quot; flags [ ADD DPD ] }}&lt;br /&gt;
|-&lt;br /&gt;
| &amp;#039;&amp;#039;abc&amp;#039;&amp;#039; || {{#var:Parameter-identisch--desc}} {{code|ipsec new}}&lt;br /&gt;
|- class=&amp;quot;Leerzeile&amp;quot;&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| rowspan=&amp;quot;2&amp;quot; | {{h3|ipsec restart}}ipsec restart&lt;br /&gt;
| id&lt;br /&gt;
| rowspan=&amp;quot;2&amp;quot; | {{#var:ipsec restart--desc}}&lt;br /&gt;
| {{code|ipsec restart  id &amp;quot;2&amp;quot;}} &lt;br /&gt;
|-&lt;br /&gt;
| name || {{code|ipsec restart name &amp;quot;ipsec-name&amp;quot;}}&lt;br /&gt;
|- class=&amp;quot;Leerzeile&amp;quot;&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| {{h3|ipsec update}}ipsec update&lt;br /&gt;
| -&lt;br /&gt;
| {{#var:ipsec update--desc}}&lt;br /&gt;
| {{code|ipsec update}}&lt;br /&gt;
|- class=&amp;quot;Leerzeile&amp;quot;&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| {{h3|ipsec status}}ipsec status&lt;br /&gt;
| -&lt;br /&gt;
| {{#var:ipsec status--desc}}&lt;br /&gt;
| {{code|ipsec status}}&lt;br /&gt;
|- class=&amp;quot;Leerzeile&amp;quot;&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| rowspan=&amp;quot;2&amp;quot; | ipsec delete &lt;br /&gt;
| id&lt;br /&gt;
| rowspan=&amp;quot;2&amp;quot; | {{#var:ipsec delete--desc}}&lt;br /&gt;
| {{code|ipsec delete  id &amp;quot;2&amp;quot;}} &lt;br /&gt;
|-&lt;br /&gt;
| name || {{code|ipsec delete name &amp;quot;ipsec-name&amp;quot;}}&lt;br /&gt;
|- class=&amp;quot;Leerzeile&amp;quot;&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| rowspan=&amp;quot;3&amp;quot; | {{h3|ipsec subnet new}}ipsec subnet new&lt;br /&gt;
| id&lt;br /&gt;
| Syntax: {{whitebox|ipsec subnet new id &amp;#039;&amp;#039;&amp;lt;ipsec-id&amp;gt;&amp;#039;&amp;#039; local_subnet &amp;#039;&amp;#039;&amp;lt;networkaddr&amp;gt;&amp;#039;&amp;#039; remote_subnet &amp;#039;&amp;#039;&amp;lt;networkaddr&amp;gt;&amp;#039;&amp;#039;}}&amp;lt;br&amp;gt;{{#var:ipsec subnet new--desc}}&lt;br /&gt;
| rowspan=&amp;quot;3&amp;quot; | {{code|ipsec subnet new id &amp;quot;2&amp;quot; local_subnet &amp;quot;192.168.10.0/24&amp;quot; remote_subnet &amp;quot;192.168.50.0/24&amp;quot;}}&lt;br /&gt;
|-&lt;br /&gt;
| local_subnet || {{#var:local_subnet--desc}}&lt;br /&gt;
|-&lt;br /&gt;
| remote_subnet || {{#var:remote_subnet--desc}}&lt;br /&gt;
|- class=&amp;quot;Leerzeile&amp;quot;&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| rowspan=&amp;quot;2&amp;quot; | ipsec subnet set &lt;br /&gt;
| subnet_id&lt;br /&gt;
| Syntax: {{whitebox|ipsec subnet set id &amp;#039;&amp;#039;&amp;lt;ipsec-id&amp;gt;&amp;#039;&amp;#039; local_subnet &amp;#039;&amp;#039;&amp;lt;networkaddr&amp;gt;&amp;#039;&amp;#039; remote_subnet &amp;#039;&amp;#039;&amp;lt;networkaddr&amp;gt;&amp;#039;&amp;#039;}}&amp;lt;br&amp;gt;{{#var:ipsec subnet set--desc}}&lt;br /&gt;
| rowspan=&amp;quot;2&amp;quot; | {{code|ipsec subnet set id &amp;quot;2&amp;quot; local_subnet &amp;quot;192.168.10.0/24&amp;quot; remote_subnet &amp;quot;192.168.70.0/24&amp;quot;}}&lt;br /&gt;
|-&lt;br /&gt;
| &amp;#039;&amp;#039;abc&amp;#039;&amp;#039; || {{#var:Parameter-identisch--desc}} {{code|ipsec subnet new}}&lt;br /&gt;
|- class=&amp;quot;Leerzeile&amp;quot;&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
&lt;br /&gt;
| style=&amp;quot;min-width: 10em;&amp;quot; | ipsec subnet delete&lt;br /&gt;
| id&lt;br /&gt;
| {{#var:ipsec subnet delete--desc}}&lt;br /&gt;
| {{code|ipsec subnet delete subnet_id &amp;quot;2&amp;quot;}}&lt;br /&gt;
|}&lt;/div&gt;</summary>
		<author><name>Lauritzl</name></author>
	</entry>
</feed>