柳阴直,烟里丝丝弄碧。
隋堤上、曾见几番,拂水飘绵送行色。登临望故国,谁识京华倦客?长亭路,年去岁来,应折柔条过千尺。
闲寻旧踪迹,又酒趁哀弦,灯照离席。
梨花榆火催寒食。愁一箭风快,半篙波暖,回头迢递便数驿,望人在天北。
凄恻,恨堆积!渐别浦萦回,津堠岑寂,斜阳冉冉春无极。
念月榭携手,露桥闻笛。沉思前事,似梦里,泪暗滴。
sharing is caring
Self-signed certificate for site-to-site strongSwan (road warrior) services. Private use only!
New updates for the root Certificate Authority (CA), I’ve re-signed all the server keys with a single CA key.
So, just one copy of the root CA cert needs to be installed on the client side (your devices):
https://cdn.frankindev.com/i.j.ic/strongSwan.pem
Choose one of the server addresses below, random server will be chosen for regions that are served with multiple servers.
server address | region(s) | updated |
---|---|---|
kr.ikev2.frankindev.com | Seoul, KR | 2 years and 4 months ago |
us.ikev2.frankindev.com | Ashburn, US | 2 years and 4 months ago |
open.frankindev.com | Seoul, KR | 2 years and 4 months ago |
👉 Follow the step-by-step configuration instructions here.
👉 macOS, iOS, and Windows 10 have native support for IKEv2.
🥳 Starting from Android 12, IKEv2 is natively supported, but I’m not able to pick the right encryption ciphers at present
. You can alternatively use the
open.frankindev.com
with Cisco AnyConnect…
On iOS 14+ or macOS Big Sur devices, you can download and install a special .mobileconfig
file that adds DNS-over-HTTPS or DNS-over-TLS servers to encrypt your DNS requests.
Here’s my configuration file for my hosted DNS-over-HTTPs: doh.mobileconfig, proxied by Fly.io.
兰陵王·柳
柳阴直,烟里丝丝弄碧。
隋堤上、曾见几番,拂水飘绵送行色。登临望故国,谁识京华倦客?长亭路,年去岁来,应折柔条过千尺。
闲寻旧踪迹,又酒趁哀弦,灯照离席。
梨花榆火催寒食。愁一箭风快,半篙波暖,回头迢递便数驿,望人在天北。
凄恻,恨堆积!渐别浦萦回,津堠岑寂,斜阳冉冉春无极。
念月榭携手,露桥闻笛。沉思前事,似梦里,泪暗滴。