From owner-freebsd-questions@FreeBSD.ORG Mon Oct 4 00:49:06 2004 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id CB76616A4CE for ; Mon, 4 Oct 2004 00:49:06 +0000 (GMT) Received: from grog.secure-computing.net (grog.secure-computing.net [63.228.14.241]) by mx1.FreeBSD.org (Postfix) with ESMTP id 50B4643D2D for ; Mon, 4 Oct 2004 00:49:06 +0000 (GMT) (envelope-from ecrist@secure-computing.net) Received: from [67.1.198.217] (0-1pool198-217.nas2.fargo1.nd.us.da.qwest.net [67.1.198.217]) (authenticated bits=0)i940mxAY000742 for ; Sun, 3 Oct 2004 19:49:04 -0500 (CDT) (envelope-from ecrist@secure-computing.net) Mime-Version: 1.0 (Apple Message framework v619) Content-Transfer-Encoding: 7bit Message-Id: <0B6A7B16-159F-11D9-B5B2-000D9333E43C@secure-computing.net> Content-Type: text/plain; charset=US-ASCII; format=flowed To: FreeBSD Questions From: Eric Crist Date: Sun, 3 Oct 2004 19:48:01 -0500 X-Pgp-Agent: GPGMail 1.0.2 X-Mailer: Apple Mail (2.619) X-Virus-Scanned: clamd / ClamAV version 0.74, clamav-milter version 0.74a on grog.secure-computing.net X-Virus-Status: Clean Subject: MPD VPN questions... X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 04 Oct 2004 00:49:06 -0000 -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Hello all, I have MPD setup to create pptp VPN. I have a couple of questions. 1) How do I make traffic coming from a host that's connected to the VPN look like it's coming from a VPN IP address? Currently it comes from their real, i.e. public IP address. 2) I use SSL for mail retrieval currently. Right now, if I'm connected to my VPN, if I try to retrieve email, I get nothing. If I look in /var/log/messages, I see the following: Oct 3 19:43:09 grog qpopper[730]: (v4.0.5) TLSv1/SSLv3 handshake with client at 0-1pool198-217.nas2.fargo1.nd.us.da.qwest.net (67.1.198.217); new session-id; cipher: RC4-SHA (RC4-SHA SSLv3 Kx=RSA Au=RSA Enc=RC4(128) Mac=SHA1), 128 bits Oct 3 19:43:14 grog qpopper[730]: I/O Error Oct 3 19:43:14 grog qpopper[730]: Error writing to client Oct 3 19:43:14 grog qpopper[730]: I/O Error Oct 3 19:43:14 grog qpopper[730]: Error writing to client Oct 3 19:43:14 grog qpopper[730]: I/O Error Oct 3 19:43:14 grog qpopper[730]: Error writing to client Oct 3 19:43:14 grog qpopper[730]: OpenSSL Error during write Oct 3 19:43:14 grog qpopper[730]: ...SSL error: error:1409F07F:SSL routines:SSL3_WRITE_PENDING:bad write retry Oct 3 19:43:14 grog qpopper[730]: Error writing to client Oct 3 19:43:14 grog qpopper[730]: ecrist at 0-1pool198-217.nas2.fargo1.nd.us.da.qwest.net (67.1.198.217): -ERR POP hangup from grog.secure-computing.net Oct 3 19:43:14 grog qpopper[730]: OpenSSL Error during write Oct 3 19:43:14 grog qpopper[730]: ...SSL error: error:1409F07F:SSL routines:SSL3_WRITE_PENDING:bad write retry Oct 3 19:43:14 grog qpopper[730]: Error writing to client Oct 3 19:43:14 grog qpopper[730]: Stats: ecrist 0 0 1313 6756817 0-1pool198-217.nas2.fargo1.nd.us.da.qwest.net 67.1.198.217 Oct 3 19:43:14 grog qpopper[730]: OpenSSL Error during write Oct 3 19:43:14 grog qpopper[730]: ...SSL error: error:1409F07F:SSL routines:SSL3_WRITE_PENDING:bad write retry Oct 3 19:43:14 grog qpopper[730]: Error writing to client Any idea why this would be? I have a feeling it's because the server is trying to send to my public IP address, but that's being blocked by the VPN from the server side. I'm all confused now. Thanks for you help. - ----- Eric F Crist Secure Computing Networks -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (Darwin) iEYEARECAAYFAkFgncIACgkQRAAY9knOW+oUJgCggigbs5qukKUfx/FrATkQmCRw XtYAn3ez+59mSKr4K/U9cE8M0xrR3Vi1 =Km4Q -----END PGP SIGNATURE-----