From owner-freebsd-net@FreeBSD.ORG Wed Nov 7 21:22:50 2007 Return-Path: Delivered-To: freebsd-net@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 40C9516A421 for ; Wed, 7 Nov 2007 21:22:50 +0000 (UTC) (envelope-from ericx@vineyard.net) Received: from vineyard.net (k1.vineyard.net [204.17.195.90]) by mx1.freebsd.org (Postfix) with ESMTP id 0F18313C4B8 for ; Wed, 7 Nov 2007 21:22:50 +0000 (UTC) (envelope-from ericx@vineyard.net) Received: from localhost (loopback [127.0.0.1]) by vineyard.net (Postfix) with ESMTP id 3D46D9151C for ; Wed, 7 Nov 2007 16:03:29 -0500 (EST) X-Virus-Scanned: by AMaViS-king1 at Vineyard.NET Received: from vineyard.net ([127.0.0.1]) by localhost (king1.vineyard.net [127.0.0.1]) (amavisd-new, port 10024) with LMTP id d-FOHsFmZRPX for ; Wed, 7 Nov 2007 16:03:29 -0500 (EST) Received: from cheesenip.vineyard.net (cheesenip.vineyard.net [204.17.195.113]) by vineyard.net (Postfix) with ESMTP id DD51F9151B for ; Wed, 7 Nov 2007 16:03:28 -0500 (EST) Message-ID: <47322820.90300@vineyard.net> Date: Wed, 07 Nov 2007 16:03:28 -0500 From: "Eric W. Bates" Organization: Vineyard.NET, Inc. User-Agent: Thunderbird 2.0.0.0 (X11/20070606) MIME-Version: 1.0 To: freebsd-net@freebsd.org Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Subject: ospf over IPSec X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 07 Nov 2007 21:22:50 -0000 I have to try and get OSPF working over an ESP tunnel. The idea is to allow graceful fall over between a dedicated T1 and a backup tunnel over the Internet. I just realized that without an esp0 interface in ifconfig, and without the IPSec associations accessible in the routing table, I have no idea whether this is even possible. Has anyone successfully used OSPF over a tunnel? Can you recommend a routing program? We've been very happy with zebra over the years; but I understand OpenOSPF and Quagga might be the current favorites. Thanks for your time. -- Eric W. Bates ericx@vineyard.net