New Zealand ADSL Mailing List


Re: ADSL, IPSEC , LRP, and pinholes

From: Matthew Lowe <matthew.lowe_at_ignite.net.nz>
Date: Tue, 17 Oct 2000 09:19:54 +1300
Message-ID: <39EB62EA.C95A6229@ignite.net.nz>

Nicholas Lee wrote:

> > That's what I thought.
> >
> > I am trying to use LRP and the FreeS/WAN IPSec, had any experience with
> this?
>
> LRP (Linux Router Project?) no, FreeSWAN yes. Personally I think FreeSWAN
> is a piece of *. Even between a two cable modems I had trouble getting it
> to operate with my Openbsd machine.
>
> I suggest trolling the adsl archives, there are numerous instances of people
> getting ADSL to work with commercial offerings that have some inbuilt
> awareness of NAT. There are also instances of things like GRE tunnels being
> broken by the latest revision of the M10 firmware. Not sure if the M11
> fixes this.
>
> Your other options are vtun, ppp over ssh, or straight ssh tunneling. I'm
> using the last option at the moment, as all I need at present is secure lpr.
> vtun I'm not so sure about it certain has promise, but its still somewhat
> under development. It crashed by Openbsd machine a couple times, so I
> stopped using it.
>
> Nicholas

I have vtun etc working but IPSec is better. The other option is to have a ssh
tunnel and then put the ipsec through this, possibly this will help.

I have not had any problems with FreeS/wan but I am using a LRP package
developed by somebody else that has spent alot of time getting some of the bugs
out.

Well back to it.

Matthew

This message is part of the NZ Broadband mailing list.
see http://unixathome.org/adsl/ for archives, FAQ,
and various documents.
To unsubscribe: send mail to majordomo@unixathome.org
with "unsubscribe adsl" in the body of the message
Received on Tue Oct 17 10:02:56 2000


This archive was generated by hypermail 2.2.0 : Thu Nov 30 11:48:06 2006 EST