From owner-freebsd-security Tue Apr 3 10:20:20 2001 Delivered-To: freebsd-security@freebsd.org Received: from point.osg.gov.bc.ca (point.osg.gov.bc.ca [142.32.102.44]) by hub.freebsd.org (Postfix) with ESMTP id 49B4F37B71C for ; Tue, 3 Apr 2001 10:20:16 -0700 (PDT) (envelope-from Cy.Schubert@uumail.gov.bc.ca) Received: (from daemon@localhost) by point.osg.gov.bc.ca (8.8.7/8.8.8) id KAA12944; Tue, 3 Apr 2001 10:20:00 -0700 Received: from passer.osg.gov.bc.ca(142.32.110.29) via SMTP by point.osg.gov.bc.ca, id smtpda12938; Tue Apr 3 10:19:53 2001 Received: (from uucp@localhost) by passer.osg.gov.bc.ca (8.11.2/8.9.1) id f33HJm142973; Tue, 3 Apr 2001 10:19:48 -0700 (PDT) Received: from cwsys9.cwsent.com(10.2.2.1), claiming to be "cwsys.cwsent.com" via SMTP by passer9.cwsent.com, id smtpdl42296; Tue Apr 3 10:18:48 2001 Received: (from uucp@localhost) by cwsys.cwsent.com (8.11.3/8.9.1) id f33HIjp30161; Tue, 3 Apr 2001 10:18:45 -0700 (PDT) Message-Id: <200104031718.f33HIjp30161@cwsys.cwsent.com> Received: from localhost.cwsent.com(127.0.0.1), claiming to be "cwsys" via SMTP by localhost.cwsent.com, id smtpdq28808; Tue Apr 3 10:18:08 2001 X-Mailer: exmh version 2.3.1 01/18/2001 with nmh-1.0.4 Reply-To: Cy Schubert - ITSD Open Systems Group From: Cy Schubert - ITSD Open Systems Group X-Sender: schubert To: mipam@ibb.net Cc: Erik Salander , freebsd-security@FreeBSD.ORG Subject: Re: IPSec and dynamic IP? In-reply-to: Your message of "Tue, 03 Apr 2001 09:30:47 CDT." <20010403093047.B15044@bootp-20-219.bootp.virginia.edu> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Date: Tue, 03 Apr 2001 10:18:07 -0700 Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org In message <20010403093047.B15044@bootp-20-219.bootp.virginia.edu>, Mipam write s: > Eeeeh, small correction. > Racoon does not support dynamic ip's now that is. > I dont know if it will in the future, so my statement > "it wont" could be very wrong, sorry. I use pipsecd between home (@home) and work. Pipsecd does not support IKE though it does support dynamic IP's. It also has the advantage of allowing me to filter (IPF or IPFW) based on the encapsulating packet via xl0 and the encapsulated packet via tun0. Regards, Phone: (250)387-8437 Cy Schubert Fax: (250)387-5766 Team Leader, Sun/Alpha Team Internet: Cy.Schubert@osg.gov.bc.ca Open Systems Group, ITSD, ISTA Province of BC To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message