yes, i got ipsec working. and yes there are some issues with the network-scripts bits. redhat is aware of them, and hopefully they'll be fixed in u1 or u2 release of rhel4. what i ended up doing was hand creating the bits and a small startup script. getting it to work with iptables is even more fun if you try to avoid private network addresses from leaking in/out of your network. i can provide the scripts and setups i used if you want to contact me directly. or if enough people care, i can send things to the list.