From owner-freebsd-security Fri Oct 5 9:14:23 2001 Delivered-To: freebsd-security@freebsd.org Received: from mk-smarthost-1.mail.uk.worldonline.com (mk-smarthost-1.mail.uk.worldonline.com [212.74.112.71]) by hub.freebsd.org (Postfix) with ESMTP id 32C4C37B406 for ; Fri, 5 Oct 2001 09:14:21 -0700 (PDT) Received: from scooby-s1.lineone.net ([194.75.152.224] helo=lineone.net) by mk-smarthost-1.mail.uk.worldonline.com with smtp (Exim 3.22 #3) id 15pXcA-000GxU-00; Fri, 05 Oct 2001 17:14:18 +0100 To: Eric Anderson Cc: freebsd-security@freebsd.org From: tariq_rashid@lineone.net Subject: Re: start topology "hub" ipsec vpn / routing? Message-Id: Date: Fri, 05 Oct 2001 17:14:18 +0100 Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org "However, it's rather easy to set up a simple way to "let the hub know" which IP it is coming from." i'd love to know! i've only ever seen people write scripts to send/receive IP info when a new IP is allocated. having a script listening on the server "hub" seems an ugly hack! i gave up looking for the "correct" solution with racoon ("let the hub know which ip address i'm coming from") as people seemed to agree that it wasn;t possible! i'm intrigued! tariq ============ racoon does not have any built it measures for dynamic ip allocation. However, it's rather easy to set up a simple way to "let the hub know" which IP it is coming from. I have this working all over the place. isakmpd should not be any problem with the routing, you'll (I'm sure) have to have some scripting to do routing, etc anyhow. Eric To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message