Re: vpn over ipsec question

From: B ($B?_at_L@C#:H(B)
Date: 05/25/04

  • Next message: Wes Peters: "Re: Freebsd to Exchange server"
    Date: Tue, 25 May 2004 11:38:13 +0900
    To: Muhammad Reza <reza@mra.co.id>
    
    

    >>>>> On Mon, 24 May 2004 09:22:08 +0700,
    >>>>> Muhammad Reza <reza@mra.co.id> said:

    > I try to configure vpn over ipsec between two FreeBSD (4.10PRERELEASE
    > and 5.1.p17) gateways.
    > My guidelines is from FreeBSD handbook,
    > Tunelling is workfine with gifconfig command, i can ping each internal
    > interface from both side gateway.
    > The problem is when i try to securing the link with setkey command
    > (setkey -f /etc/ipsec.conf), i cant no longer established connection
    > between internal interface. (ping time out).
    > Please help me regarding this problem

    Please provide more detailed information if you want to get useful
    advice. At least the content of ipsec.conf is necessary. Perhaps it
    contains "real" secret keys you want to hide. If so, first try the
    same configuration with temporary keys like "foobarbaz", and report
    the problem again (if it happens) with the full details of ipsec.conf
    and the temporary keys.

    Another nit: you may also want to ask the question at
    snap-users@kame.net if you still cannot get an answer here.

                                            JINMEI, Tatuya
                                            Communication Platform Lab.
                                            Corporate R&D Center, Toshiba Corp.
                                            jinmei@isl.rdc.toshiba.co.jp
    _______________________________________________
    freebsd-net@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-net
    To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"


  • Next message: Wes Peters: "Re: Freebsd to Exchange server"

    Relevant Pages

    • Re: PIX: Ping VPN host from inside network
      ... to ping hosts in the vpn subnet pool or vice-versa. ... The same capture applied to the outside interface shows pings heading ... access-list inside_nat0_outbound extended permit ip any 192.168.24.0 ... access-group outside_access_in in interface outside ...
      (comp.security.firewalls)
    • Re: Dropped packets via ISR
      ... I also used ping plotter... ... Tried changing from full duplex to half duplex to auto and that did ... "1) Interface MTU at 1500 is fine. ...
      (comp.dcom.sys.cisco)
    • Re: ping using multiple interfaces
      ... > that all pings are going out over the first interface. ... I don't think Solaris ping binds to the IP address that way. ... It supports local binds, ...
      (comp.unix.solaris)
    • Re: Long Time Samba No Work-Need Expert Help On Samba/Networking
      ... I can ping the WinXP and Ubuntu pcs very ... Yielding connection to IPC$ ... added interface ip=192.168.1.64 bcast=192.168.1.255 ... Default User Disk ...
      (Ubuntu)
    • Re: Problem with my wireless network(To all LinkSys users)
      ... hey andrew, ... the ping problem was solved ... ... connected to lan's interface. ... the wireless interface still have some ...
      (Focus-Linux)