Subject: Re: ipsec tunnels with one end fixed, other dynamic
To: Bill Studenmund <wrstuden@netbsd.org>
From: Paul Dokas <dokas@cs.umn.edu>
List: tech-net
Date: 02/01/2002 15:43:07
--gKMricLos+KVdGMg
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline

On Tue, Jan 15, 2002 at 03:45:48PM -0800, Bill Studenmund wrote:
> Has anyone gotten this working?
> 
> The idea is I have a laptop, and when I'm out on the road, it sets up a
> vpn to my house. I know I'd have to do something like have certificates
> set up.

Please forgive the long delay on this.  Getting it working took an important
update that Itojun made yesterday to /sys/netkey/key.c.   The attached
tarball has all of my configuration files and a README on how I set it
all up.


The only big problem that remains is PR kern/13813   In other words, my
fixed end point panics after about 10 new policies have been generated.
Not a fun bug to have.


Paul
-- 
Paul Dokas                                            dokas@cs.umn.edu
======================================================================
Don Juan Matus:  "an enigma wrapped in mystery wrapped in a tortilla."

--gKMricLos+KVdGMg
Content-Type: application/x-tar-gz
Content-Disposition: attachment; filename="IPSec-config.tgz"
Content-Transfer-Encoding: base64
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--gKMricLos+KVdGMg--