Re: Routing a VPN.....confused

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Dear Ralf

Although it was not related to me but your site, http://www.spenneberg.com
really helped me out in some of my pending issues :)

Thank you.

Regards

 

Babar Kazmi.

 

>Am Son, 2003-12-14 um 03.24 schrieb Matt Brei:
> > Hi all,
> >
> > I'm trying to set up a VPN with my buddy back in Chicago.  We're both
> > using iptables to nat our Internet connection to the rest of the LAN and
> > filter out all the naughtiness on the cable modem connection.  So far,
> > we've tried FreeS/WAN on the iptables routers, but as soon as we start
> > the ipsec service, it kills the Internet connection.
>This sounds pretty much like a configuration issue using freeswan >=
>2.0. FreeS/WAN enables opportunistic encryption (OE) by default. This
>may interrupt your Internet connections since it tries to encrypt
>everything by default. It uses policy groups for this. You probably have
>to disable these policy groups.
>
>Take a look at:
>http://www.freeswan.org/freeswan_trees/freeswan-2.04/doc/policygroups.html#disable_policygroups
>
>Cheers,
>
>Ralf
>--
>Ralf Spenneberg
>RHCE, RHCX
>
>Book: VPN mit Linux
>Book: Intrusion Detection für Linux Server   http://www.spenneberg.com
>IPsec-Howto      http://www.ipsec-howto.org
>Honeynet Project Mirror:                     http://honeynet.spenneberg.org
>


The new MSN 8: smart spam protection and 2 months FREE*

[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux