lør, 10.04.2004 kl. 14.30 skrev John A. Sullivan III: [...] > The closest solution we could find to rival the commercial offerings on > such a large scale is netfilter + freeS/WAN + iproute2 + ISC DHCP + > StrongSec DHCP Relay + OpenCA. There are reasonable alternatives to > OpenCA. > > The FreeS/WAN code is alive and healthy. Two major cooperative forks > are available. One is at www.openswan.org and the other is at > www.strongswan.org. Both are well supported and helpful. > > There a fairly complete although slightly dated slide shows on tying all > these technologies together (other than OpenCA) in the training section > of http://iscs.sourceforge.net. > > The only major missing piece right now to make this combination a > full-fledged competitor to the largest and most expensive commercial > players is a sophisticated management front end such as those offered by > Solsoft, SmartPipes, NetScreen, Checkpoint, etc. That is the hole I am > trying to fill with the ISCS project. It is the last piece that we need > before we can do with open source tools what we have previously only > been able to do with commercial tools to achieve the scale and > complexity we need. If anyone wants to help, it is a huge project and I > can use all the help I can get! This was an enormously valuable precis and greatly appreciated. I wish I could help, but don't have access to a lab. If there's anything a single user set-up can do, let me know *at my sig below*. --Tonni -- Kattekots op de vloer na de moeë thuiskomst weinig walg getrouw als kind de kat heet welkom. mail: billy - at - billy.demon.nl http://www.billy.demon.nl