VPN: Network to Host to Internet

From: David McKenzie (krisp_at_krisp.com)
Date: 08/12/03

  • Next message: Mark Woodson: "Re: ppp question"
    Date: Tue, 12 Aug 2003 14:08:01 -0400
    To: freebsd-questions@freebsd.org
    
    

    Hello,

    I have two freebsd boxes running 5.0 with IPSec enabled and racoon
    installed. This is what I am trying to do:

    | internal | -------> [FreeBSD gateway] ----> (internet) ----->
    [FreeBSD host] -------> internet

    I'd like to encapsulate all IP traffic from my internal network at my
    apartment (192.168.1.0/24) through my cable modem to a FreeBSD box at
    school, and then off to the internet. I don't want any traffic to go
    directly to the internet -- I'd like to use IPsec to encrypt all
    traffic to the host at school before reaching the internet.

    At this time, I'm not concerned with using Racoon for IKE, as I haven't
    had much luck getting it to work in the past. I am willing to use
    static keys for the time being using the 'setkey' command, but I'm not
    sure how to set everything up as the only documentation I can find is
    host to host or network to network, but not network to host to internet.

    Has anyone implemented IPsec in this fashion? Some pointers to
    documentation I may have missed would be appreciated, as well as some
    explanation on how to set up the tunnels and routes to make this
    scenario a reality.

    Thanks,
    David

    _______________________________________________
    freebsd-questions@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-questions
    To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org"


  • Next message: Mark Woodson: "Re: ppp question"

    Relevant Pages

    • Re: 2 pc network - cant see host files from pc 2 on pc 1
      ... If the second card is lost on HOST PC then DSL Internet does not connect. ... Ditch the second network card in the one ...
      (microsoft.public.windowsxp.security_admin)
    • Re: Conflict between www. & mail.
      ... mail.ilpomodoro.com is hosted at Network Solutions ... and fussed with the A record, host record, etc but it's still not ... Network Solutions email server also responded. ... ns29.worldnic.com internet address = 205.178.190.15 ...
      (microsoft.public.win2000.dns)
    • Re: Yoo-hoo, I still dont have an answer! (was Re: Sygate)
      ... Acronym for Internet Protocol. ... packets from sender to destination network and station, ... the network the host is connected to; the remaining bits identify the host ...
      (alt.computer.security)
    • Re: USB ASDL Network
      ... >i have a home network and my modem is connected by USB to ... Assuming that you're running XP on both computers, ICS on the host should work ... fine for internet service on the other computer. ...
      (microsoft.public.windowsxp.network_web)
    • How do I configure my wireless PC to share its internet connex w/
      ... Basically its a long way from my PS2 ... I assume I should be able to harness the internet ... I should be able to start a network. ... Setup Wizard to configure the laptop to serve as a network Host to ...
      (microsoft.public.windowsxp.network_web)