Date: Wed, 6 Apr 2005 11:06:37 +0930 From: "Daniel O'Connor" <doconnor@gsoft.com.au> To: Walentyn <Walentyn@gorsk.com> Cc: freebsd-stable@freebsd.org Subject: Re: FreeBSD mpd PPTP client connection to SnapGearLITE+ Message-ID: <200504061106.44655.doconnor@gsoft.com.au> In-Reply-To: <1112710364.42529cdc56012@w2b.bigimap.com> References: <1112710364.42529cdc56012@w2b.bigimap.com>
next in thread | previous in thread | raw e-mail | index | archive | help
--nextPart1302446.qdbypAZ3f2 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable Content-Disposition: inline On Tue, 5 Apr 2005 23:42, Walentyn wrote: > > Supports MPPE (draft-ietf-pppext-mppe) MPPE is Microsoft Point to > > Point Encryption scheme. It is possible to configure ppp to participate > > in Microsoft's Windows VPN. For now, ppp can only get encryption keys > > from CHAP 81 authentication. ppp must be compiled with DES for MPPE to > > oper- ate. > > I stand corrected. > > From my previous reading, it looked like there were a whole bunch of > disparate patches to give ppp MMPE functionality. From the quoted manual > section, it seems that it has rudimentary functionality if you compile it > yourself. (I prefer NOT to roll my own.) Only if you build world with -DNO_CRYPTO does PPP not have DES support. I have had userland ppp as both a client and server for doing MPPE with. > Also from what I read, it would appear that netgraph/mpd, etc. is a more > integrated more cleanly coded implementation that should work very well -- > if you can get it to work, that is. :) <shrugs> Try ppp and see if it works. > I'll tinker with my set up for another day or two. If I'm able to get it > working I'll report. Otherwise, I found that SnapGear may be dead as a > company but Cyberguard still supports it and has come out with some very > interesting new products, in particular a PCI NIC firewall/VPN (see URL > below) which might just be what I need. > > http://www.cyberguard.com/products/firewall/SG_Family/SG630.html?lang=3Dd= e_EN Looks kind of neat but IMO a bit of a waste of money :) =2D-=20 Daniel O'Connor software and network engineer for Genesis Software - http://www.gsoft.com.au "The nice thing about standards is that there are so many of them to choose from." -- Andrew Tanenbaum GPG Fingerprint - 5596 B766 97C0 0E94 4347 295E E593 DC20 7B3F CE8C --nextPart1302446.qdbypAZ3f2 Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.6 (FreeBSD) iD8DBQBCUz0s5ZPcIHs/zowRAknNAJ9f1XMkb0kHPLJcrKhbqdHePQoBewCghSxY Bv79UifjpITvl2P+MFwlxxo= =olqd -----END PGP SIGNATURE----- --nextPart1302446.qdbypAZ3f2--
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200504061106.44655.doconnor>