On Tue, 21 Nov 2000 16:53:12 +0000
Liam Bedford <*@lbedford.org> wrote:
| On Tue, Nov 21, 2000 at 04:50:54PM +0000, John P . Looney came forth with:
| > Has anyone got a working IPSec install around ? I'm trying to get a
| > handle on it, and want to try get my workstation to act as a gateway to
| > someone elses working IPSec network...sorta like a "pointless VPN" :)
| I do, but I don't think I can give you access.. do you not have multiple
| machines there?
Ditto. I could probably answer a couple of simple questions about
persuading FreeS/WAN to work with a RedCreek box though (for extremely
limited values of 'work with').
| btw, if you have cisco routers in between you and the internet, you need to
| allow the ip protocols 49 and 51 access (IIRC)..
ITYM 50 for ESP. (...and I think 51 for AH).
| we just did an
| ip allow all from boston to dublin
| and vice versa..
You also need to allow UDP 500 between the two endpoints.
Paul
Maintained by the ILUG website team. The aim of Linux.ie is to
support and help commercial and private users of Linux in Ireland. You can
display ILUG news in your own webpages, read backend
information to find out how. Networking services kindly provided by HEAnet, server kindly donated by
Dell. Linux is a trademark of Linus Torvalds,
used with permission. No penguins were harmed in the production or maintenance
of this highly praised website. Looking for the
Indian Linux Users' Group? Try here. If you've read all this and aren't a lawyer: you should be!