Re: VPN with FAST_IPSEC and ipsec tools



On Fri, Jun 16, 2006 at 01:43:54PM +1000, Michael Vince wrote:
I have setup the GRE tunneling and that is working fine doing pings and
tracerts when I disable ipsec and ipsec-tools, its just the encryption
side thats the problem.

Ah, I guess this means you're following the instructions in the FreeBSD
handbook, which last time I looked gave a most bizarre and unnecessary way
of setting up IPSEC (GIF tunneling running on top of IPSEC *tunnel* mode). I
raised it on this list before.

Most people are better off just setting up IPSEC tunnel mode. A few use GIF
running on top of IPSEC _transport_ mode (e.g. those running routing
protocols like OSPF over tunnels)

Regards,

Brian.
_______________________________________________
freebsd-net@xxxxxxxxxxx mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-net
To unsubscribe, send any mail to "freebsd-net-unsubscribe@xxxxxxxxxxx"



Relevant Pages

  • FreeBSD (Racoon) / Draytek Setup
    ... I'm having trouble attempting to set up a lan to lan VPN between FreeBSD 4.9 ... This tunnel joins 192.168.32.1 and 192.168.1.1 There's a route to ... I've completd the VPN setup on the Draytek Vigor2900. ... FreeBSD/Draytek lan to lan VPN using IPSec? ...
    (freebsd-net)
  • Racoon / Draytek Setup
    ... I'm having trouble attempting to set up a lan to lan VPN between FreeBSD 4.9 ... On the FreeBSD box I've gone ahead and created a tunnel ... I've completd the VPN setup on the Draytek Vigor2900. ... FreeBSD/Draytek lan to lan VPN using IPSec? ...
    (freebsd-questions)
  • IPSEC tunnel & setkey, How do I tell if setkey worked?
    ... now I want it to be an IPSEC tunnel endpoint. ... another freeBSD box first, and maybe eventually a Watchguard firebox2 ... firewall "appliance". ... My kernels have the IPSEC and IPSEC_ESP options included. ...
    (FreeBSD-Security)
  • Re: Wifi ipsec freebsd
    ... I too have set up a ipsec secured wireless network and this article ... Tunnel vs. transport mode was something I never fully understood. ... connection over wifi between a FreeBSD gateway and a Windows laptop. ...
    (freebsd-questions)
  • Re: freebsd-security Digest, Vol 201, Issue 2
    ... freebsd vpn server behind nat dsl router ... which allows IPSec tunnels to be established if there is some NAT ... I have created an esp tunnel between my two sites, ...
    (FreeBSD-Security)