From owner-freebsd-questions@FreeBSD.ORG Thu Jan 8 01:26:19 2004 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id D35FB16A4CE for ; Thu, 8 Jan 2004 01:26:19 -0800 (PST) Received: from dis.gruntle.org (dis.gruntle.org [198.144.205.74]) by mx1.FreeBSD.org (Postfix) with ESMTP id 6923A43D1F for ; Thu, 8 Jan 2004 01:26:17 -0800 (PST) (envelope-from cjones@dis.gruntle.org) Received: from dis.gruntle.org (localhost [127.0.0.1]) by dis.gruntle.org (8.12.10/8.12.10) with ESMTP id i089QHcj023164; Thu, 8 Jan 2004 01:26:17 -0800 (PST) (envelope-from cjones@dis.gruntle.org) Received: (from cjones@localhost) by dis.gruntle.org (8.12.10/8.12.10/Submit) id i089QGDH023163; Thu, 8 Jan 2004 01:26:16 -0800 (PST) (envelope-from cjones) Date: Thu, 8 Jan 2004 01:26:16 -0800 From: Chris Jones To: Joe Marcus Clarke Message-ID: <20040108092616.GE357@gruntle.org> References: <20040108074911.GC357@gruntle.org> <1073549281.76587.12.camel@shumai.marcuscom.com> <20040108083430.GD357@gruntle.org> <1073551365.76587.24.camel@shumai.marcuscom.com> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <1073551365.76587.24.camel@shumai.marcuscom.com> User-Agent: Mutt/1.5.5.1i cc: FreeBSD User Questions List Subject: Re: mpd PPTP to Cisco 3000 VPN Concentrator routing problem X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 08 Jan 2004 09:26:20 -0000 Original message from Joe Marcus Clarke: > I was able to get past the routing loop by readdressing the interface as > soon as it came up. This is a good starter howto on that procedure: > > http://www.cs.rpi.edu/~flemej/fbsd-cisco-vpn/fbsd-cisco-vpn.pdf Yeah I went through this, but my iface up-script doesn't seem to work, which was my original question. I didn't make it far enough to find out mppe is broken as well. > You might also consider trying out security/vpnc if the concentrator > also allows for IPSec clients using the Cisco VPN client. I'll check it out, thanks. I didn't have any luck with isakmpd because it apparently doesn't support xauth and some other things I need. -- Chris