Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 18 Jan 2001 00:11:45 -0500
From:      The Babbler <bts@babbleon.org>
To:        freebsd-questions@freebsd.org
Subject:   IPSEC tunneling
Message-ID:  <3A667B11.7BE15007@babbleon.org>

next in thread | raw e-mail | index | archive | help

I'm trying to get my FreeBSD gateway/firewall machine set up so that
it will allow my wife's VPN access to work; this requires IPSEC packets
to get through.

Has anybody done this?  Any helpful hints?

I turned on the IPSEC and the tunneling options in the kernel,
and I'm letting "esp" and "udp" packets through.  
(For now, I'm basically letting all of 'em through.)


FWIW, I tried this in Linux and couldn't ever get it to work; this was
a motivation for trying FreeBSD.  It's still not working, but I can at
least follow the network traffic better in FreeBSD, which at least let
me fix my rules.  (The rules I used under Linux were bad.)

My gateway machine is multiplexing multiple internal-network machines
to a single cable modem connection by using the command to translate
packets.  I suspect that something is going wrong there.

[Sorry this is a little vague; for other reasons the machine isn't
currently booted into FreeBSD so I can't double-check the precise 
settings at the moment.]


-- 
"Brian, the man from babble-on"              bts@babbleon.org
Brian T. Schellenberger                      http://www.babbleon.org
Support http://www.eff.org.                  Support decss defendents.
Support http://www.programming-freedom.org.  Boycott amazon.com.


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3A667B11.7BE15007>