Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 1 Nov 2000 21:13:25 -0800 (PST)
From:      Archie Cobbs <archie@dellroad.org>
To:        "Tolpanov, Dmitry" <tdn@stack.ru>
Cc:        security@FreeBSD.ORG
Subject:   Re: MPPE and US export restrictions.
Message-ID:  <200011020513.eA25DQO57527@curve.dellroad.org>
In-Reply-To: <807044A67EA3D211B11D00A024E91A45F2D23C@exch.stack.ru> "from Tolpanov, Dmitry at Nov 2, 2000 11:46:53 am"

next in thread | previous in thread | raw e-mail | index | archive | help
Tolpanov, Dmitry writes:
> I'm sorry if my question will be a little bit out of topic, but I think it
> is connected with security.
> I'm organizing PPTP service and interested in encryption of traffic. As PPTP
> server i'm using MPD port (mpd-3.2). I've installed it with MPPC and MPPE
> options (all necessary sources are included, as I understand). Now I start
> mpd with MPPC-MPPE options enabled.
> As PPTP client I have Win NT 4.0 Server. When I try to connect to PPTP
> server without enabled Encrypt option (NT) it is succeeded. But when I
> enable Encrypt option on NT the connection fails while everything is OK. 
> 
> Now I think may be my problems are because of US export restrictions, My NT
> and MPD simply do not support MPPE. I live in Russia. Recently US government
> canceled this restriction but my be my NT and FreeBSD(4.0) do not know about
> this.

The export stuff shouldn't be an issue. If you email me an mpd log
trace I can tell you why it's failing. Make sure you enable option
mpp-e128 if you're requiring "strong" encryption.

-Archie

__________________________________________________________________________
Archie Cobbs     *     Packet Design     *     http://www.packetdesign.com


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200011020513.eA25DQO57527>