From owner-freebsd-net@FreeBSD.ORG Thu Mar 23 15:54:42 2006 Return-Path: X-Original-To: freebsd-net@freebsd.org Delivered-To: freebsd-net@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 617B416A401 for ; Thu, 23 Mar 2006 15:54:42 +0000 (UTC) (envelope-from sdrhodus@gmail.com) Received: from wproxy.gmail.com (wproxy.gmail.com [64.233.184.197]) by mx1.FreeBSD.org (Postfix) with ESMTP id 219E943D6E for ; Thu, 23 Mar 2006 15:54:40 +0000 (GMT) (envelope-from sdrhodus@gmail.com) Received: by wproxy.gmail.com with SMTP id 67so837950wri for ; Thu, 23 Mar 2006 07:54:39 -0800 (PST) DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:message-id:date:from:sender:to:subject:cc:in-reply-to:mime-version:content-type:content-transfer-encoding:content-disposition:references; b=iGP38Pqq0EF7Y16EnmKMER3Mc2OvTaeHe3Kb23YdIqxxoxENuiJ42Xe9n+u5+4zdeYos7w/Xm2HWsKvHjGkyN8M0N+RzVJTZT30GuWFnz6Q7ZPgiFGz7oKSSr9lc8KrFrApPTha9IqQ+HEcFmA0fRpfPtKcnGW55ZhVhmyj+mPs= Received: by 10.65.11.17 with SMTP id o17mr1834677qbi; Thu, 23 Mar 2006 07:54:39 -0800 (PST) Received: by 10.64.178.12 with HTTP; Thu, 23 Mar 2006 07:54:38 -0800 (PST) Message-ID: Date: Thu, 23 Mar 2006 10:54:38 -0500 From: "David Rhodus" Sender: sdrhodus@gmail.com To: "Matthew Grooms" In-Reply-To: <4421CCF3.9010907@shrew.net> MIME-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Content-Disposition: inline References: <4421CCF3.9010907@shrew.net> Cc: freebsd-net@freebsd.org Subject: Re: FreeBSD as a VPN Client Gateway ... X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 23 Mar 2006 15:54:42 -0000 On 3/22/06, Matthew Grooms wrote: > All, > > If anyone would like to use FreeBSD as a VPN gateway but have the > usual Win2K/XP clients to support, here is a free software product that > may be of interest ... > > http://www.shrew.net/download > > The VPN Client was designed to work with ipsec-tools + FreeBSD as > the gateway but others such as NetBSD have been tested. Features include > multiple XAuth user authentication modes, automatic client network > configuration, remote network topology download, NAT Traversal, IKE > fragmentation and transport pre-fragmentation ( ala NetBSD 3.0 ). The > latter three are useful for clients behind NAT devices or broken > DSL/Cable routers that drop large or fragmented UDP packets. > > If you are interested in using NAT-T, you should have a look at > Yvans kernel patch which offers everything but transport > pre-fragmentation support ... > > http://ipsec-tools.sf.net/freebsd6-natt.diff > > Feedback and bug reports are appreciated ( off this list ). > > -Matthew Are you going to release the source to the windows client ? -DR