Friday 13 June 2014

How to Install ipsec-tools

IPsec



For IPsec to work inside a container:


  • Kernel 042stab084.8 or later

  • The following kernel modules must be loaded before container start:



af_key esp4 esp6 xfrm4_mode_tunnel xfrm6_mode_tunnel



  • Capability net_admin must be granted to a container



modprobe af_key
modprobe esp4
modprobe esp6
modprobe xfrm4_mode_tunnel
modprobe xfrm6_mode_tunnel


Steps to install ipsec-tools



Create file /etc/yum.repos.d/CentOS-Base.repo with contents as below


# CentOS-Base.repo## This file uses a new mirrorlist system developed by Lance Davis for CentOS.# The mirror system uses the connecting IP address of the client and the# update status of each mirror to pick mirrors that are updated to and# geographically close to the client.  You should use this for CentOS updates# unless you are manually picking other mirrors.## If the mirrorlist= does not work for you, as a fall back you can try the# remarked out baseurl= line instead.##[base]
name
=CentOS-5-Base#mirrorlist=http://sg2plmirror01.shr.prod.sin2.secureserver.net/vph/2/download/mirrors/cos-5.i386
failovermethod
=priority
baseurl
=http://mirror.centos.org/centos/$releasever/os/$basearch/
gpgcheck
=1
gpgkey
=file:///etc/pki/rpm-gpg/RPM-GPG-KEY-centos5#released updates[update]
name
=CentOS-5-Updates
mirrorlist
=http://sg2plmirror01.shr.prod.sin2.secureserver.net/vph/2/download/mirrors/cos-5-updates.i386
failovermethod
=priority
#baseurl=http://mirror.centos.org/centos/$releasever/updates/$basearch/
gpgcheck
=1
gpgkey
=file:///etc/pki/rpm-gpg/RPM-GPG-KEY-centos5#packages used/produced in the build but not released[addons]
name
=CentOS-5-Addons
mirrorlist
=http://sg2plmirror01.shr.prod.sin2.secureserver.net/vph/2/download/mirrors/cos-5-addons.i386
failovermethod
=priority
#baseurl=http://mirror.centos.org/centos/$releasever/addons/$basearch/
gpgcheck
=1
gpgkey
=file:///etc/pki/rpm-gpg/RPM-GPG-KEY-centos5#additional packages that may be useful[extras]
name
=CentOS-5-Extras
mirrorlist
=http://sg2plmirror01.shr.prod.sin2.secureserver.net/vph/2/download/mirrors/cos-5-extras.i386
failovermethod
=priority
#baseurl=http://mirror.centos.org/centos/$releasever/extras/$basearch/
gpgcheck
=1
gpgkey
=file:///etc/pki/rpm-gpg/RPM-GPG-KEY-centos5#additional packages that extend functionality of existing packages[centosplus]
name
=CentOS-5-Plus
mirrorlist
=http://sg2plmirror01.shr.prod.sin2.secureserver.net/vph/2/download/mirrors/cos-5-centosplus.i386
failovermethod
=priority
#baseurl=http://mirror.centos.org/centos/$releasever/centosplus/$basearch/
gpgcheck
=1
enabled
=0
gpgkey
=file:///etc/pki/rpm-gpg/RPM-GPG-KEY-centos5#contrib - packages by Centos Users[contrib]
name
=CentOS-5-Contrib
mirrorlist
=http://sg2plmirror01.shr.prod.sin2.secureserver.net/vph/2/download/mirrors/cos-5-contrib.i386
failovermethod
=priority
#baseurl=http://mirror.centos.org/centos/$releasever/contrib/$basearch/
gpgcheck
=1
enabled
=0
gpgkey
=file:///etc/pki/rpm-gpg/RPM-GPG-KEY-centos5




OR



Create file /etc/yum.repos.d/public-yum-el5.repo with contents as below


[el5_latest]
name
=OracleLinux $releasever Latest($basearch)
baseurl
=http://public-yum.oracle.com/repo/OracleLinux/OL5/latest/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=1[el5_ga_base]
name
=OracleLinux $releasever GA installation media copy ($basearch)
baseurl
=http://public-yum.oracle.com/repo/EnterpriseLinux/EL5/0/base/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0[el5_u1_base]
name
=EnterpriseLinux $releasever Update1 installation media copy ($basearch)
baseurl
=http://public-yum.oracle.com/repo/EnterpriseLinux/EL5/1/base/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0[el5_u2_base]
name
=EnterpriseLinux $releasever Update2 installation media copy ($basearch)
baseurl
=http://public-yum.oracle.com/repo/EnterpriseLinux/EL5/2/base/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0[el5_u3_base]
name
=EnterpriseLinux $releasever Update3 installation media copy ($basearch)
baseurl
=http://public-yum.oracle.com/repo/EnterpriseLinux/EL5/3/base/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0[el5_u4_base]
name
=EnterpriseLinux $releasever Update4 installation media copy ($basearch)
baseurl
=http://public-yum.oracle.com/repo/EnterpriseLinux/EL5/4/base/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0[el5_u5_base]
name
=EnterpriseLinux $releasever Update5 installation media copy ($basearch)
baseurl
=http://public-yum.oracle.com/repo/EnterpriseLinux/EL5/5/base/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0[ol5_u5_base]
name
=OracleLinux $releasever Update5 installation media copy ($basearch)
baseurl
=http://public-yum.oracle.com/repo/OracleLinux/OL5/5/base/x86_64/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0[ol5_u6_base]
name
=OracleLinux $releasever Update6 installation media copy ($basearch)
baseurl
=http://public-yum.oracle.com/repo/OracleLinux/OL5/6/base/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0[ol5_u7_base]
name
=OracleLinux $releasever Update7 installation media copy ($basearch)
baseurl
=http://public-yum.oracle.com/repo/OracleLinux/OL5/7/base/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0[ol5_u8_base]
name
=OracleLinux $releasever Update8 installation media copy ($basearch)
baseurl
=http://public-yum.oracle.com/repo/OracleLinux/OL5/8/base/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0[el5_addons]
name
=EnterpriseLinux $releasever Add ons ($basearch)
baseurl
=http://public-yum.oracle.com/repo/EnterpriseLinux/EL5/addons/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0[el5_oracle_addons]
name
=OracleSoftware addons forEnterpriseLinux $releasever ($basearch)
baseurl
=http://public-yum.oracle.com/repo/EnterpriseLinux/EL5/oracle_addons/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0[ol5_UEK_latest]
name
=LatestUnbreakableEnterpriseKernelforOracleLinux $releasever ($basearch)
baseurl
=http://public-yum.oracle.com/repo/OracleLinux/OL5/UEK/latest/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0[ol5_UEK_base]
name
=UnbreakableEnterpriseKernelforOracleLinux $releasever ($basearch)
baseurl
=http://public-yum.oracle.com/repo/OracleLinux/OL5/UEK/base/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0[el5_unsupported]
name
=ProductivityApplicationsforEnterpriseLinux $releasever ($basearch)
baseurl
=http://public-yum.oracle.com/repo/EnterpriseLinux/EL5/unsupported/$basearch/
gpgkey
=http://public-yum.oracle.com/RPM-GPG-KEY-oracle-el5
gpgcheck
=1
enabled
=0



  Install the package:




yum install ipsec-tools


No comments:

Post a Comment