From owner-freebsd-security@FreeBSD.ORG Mon Jan 23 08:55:41 2006 Return-Path: X-Original-To: freebsd-security@freebsd.org Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id C4F4016A41F for ; Mon, 23 Jan 2006 08:55:41 +0000 (GMT) (envelope-from vaida.bogdan@gmail.com) Received: from zproxy.gmail.com (zproxy.gmail.com [64.233.162.206]) by mx1.FreeBSD.org (Postfix) with ESMTP id E09C243D75 for ; Mon, 23 Jan 2006 08:55:35 +0000 (GMT) (envelope-from vaida.bogdan@gmail.com) Received: by zproxy.gmail.com with SMTP id 8so885403nzo for ; Mon, 23 Jan 2006 00:55:34 -0800 (PST) DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=fCQxGVxU4Z7vejRwz2scyKKARZd94svanDSn3EZsPsjejftpjqL6eq1/edwtQcU/C+gPaWq8p6hpuwK93zywsWA8mhlf2rm1ehqNUwEaQghdEMqIGWPmDTvTJLIyQJwH+nTSFiK8wg+gVfra+7adH6QMiqOqcipNXZJienbpPWs= Received: by 10.36.74.17 with SMTP id w17mr3753743nza; Mon, 23 Jan 2006 00:55:34 -0800 (PST) Received: by 10.36.251.28 with HTTP; Mon, 23 Jan 2006 00:55:34 -0800 (PST) Message-ID: <12848a3b0601230055h12b7169uce7f1fbb2f0da8e6@mail.gmail.com> Date: Mon, 23 Jan 2006 10:55:34 +0200 From: Vaida Bogdan To: corwin@aeternal.net In-Reply-To: <43D3E694.9040902@aeternal.net> MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Content-Disposition: inline References: <12848a3b0601221142r2161c20ka6d128ecf5c299aa@mail.gmail.com> <43D3E694.9040902@aeternal.net> Cc: freebsd-security@freebsd.org Subject: Re: setting up vpn client on a freebsd workstation X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 23 Jan 2006 08:55:41 -0000 I don't need openvpn, I need IPSEC (KAME). So none of the proposed solutions work. I am the "FreeBSD Client" in the configuration so I can't change the server vpn implementation. On 1/22/06, Martin Hudec wrote: > Hello, > > Vaida Bogdan wrote: > > I have the following network: > > > > External Interface External Interface > > ccc.ccc.ccc.ccc aaa.aaa.aaa.aaa > > | | > > --> VPN <--> Internet <--> FreeBSD Client (NATed extip: bbb.bbb.bbb.bbb= ) > > | > > FW-1 Protected Net > > ddd.ddd.ddd.ddd/24 > > > > VPN: ipsec freeswan (UDP encapsulated tunnel) > > ccc.ccc.ccc.ccc has port 136/UDP open for this > > I also have the following certs: cert.pem, key.pem crl.pem and CA.pem > > I am behind internal ips allocated by dhcp. > > > > I need to connect to an ip in the Protected Net area. > > Are you connecting to Windows VPN server or VPN router or what? Maybe > net/pptp-client will be enough for you.. > > Martin > _______________________________________________ > freebsd-security@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-security > To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.or= g" >