From 582f98d18c72f49c8b262acd271ed0383bcab3f4 Mon Sep 17 00:00:00 2001 From: hwdsl2 Date: Fri, 23 Nov 2018 11:52:38 -0600 Subject: [PATCH] Update docs --- docs/ikev2-howto-zh.md | 36 ++++++++++++++++++++---------------- docs/ikev2-howto.md | 36 ++++++++++++++++++++---------------- docs/manage-users-zh.md | 29 ++++++++++++++++------------- docs/manage-users.md | 23 +++++++++++++---------- 4 files changed, 69 insertions(+), 55 deletions(-) diff --git a/docs/ikev2-howto-zh.md b/docs/ikev2-howto-zh.md index 5eaaddc..3273e8a 100644 --- a/docs/ikev2-howto-zh.md +++ b/docs/ikev2-howto-zh.md @@ -24,17 +24,19 @@ Libreswan 支持通过使用 RSA 签名算法的 X.509 Machine Certificates 来 1. 获取 VPN 服务器的公共 IP 地址,将它保存到变量并检查。 ```bash - $ PUBLIC_IP=$(wget -t 3 -T 15 -qO- http://ipv4.icanhazip.com) - $ printf '%s\n' "$PUBLIC_IP" - (检查显示的公共 IP) + PUBLIC_IP=$(dig @resolver1.opendns.com -t A -4 myip.opendns.com +short) + [ -z "$PUBLIC_IP" ] && PUBLIC_IP=$(wget -t 3 -T 15 -qO- http://ipv4.icanhazip.com) + printf '%s\n' "$PUBLIC_IP" ``` + 检查并确保以上命令的输出与服务器的公共 IP 一致。该变量将在以下步骤中使用。 + **注:** 另外,在这里你也可以指定 VPN 服务器的域名。例如: `PUBLIC_IP=myvpn.example.com`。 1. 在 `/etc/ipsec.conf` 文件中添加一个新的 IKEv2 连接: ```bash - $ cat >> /etc/ipsec.conf <> /etc/ipsec.conf <> /etc/ipsec.conf <> /etc/ipsec.conf <> /etc/ipsec.conf <> /etc/ipsec.conf <> /etc/ipsec.conf <> /etc/ipsec.conf <> /etc/ipsec.conf <> /etc/ipsec.conf <> /etc/ipsec.conf <> /etc/ipsec.conf <