OpenVPN, and IPSec are different VPN standards.  There difference are
listed here - 

http://www.netheaven.com/TunnelTypes.html 

For ease of setup - when you have control of both ends, and speed of
setup is an issue - openvpn is what I would use.

As for wireless use - the docs in the Bering User manual go through 
using OpenVPN for use with a wireless network - but you can ignore
the 2nd half of that document if you are doing a router to router link,
and use the Shorewall docs for that piece.

For testing the VPN ... well, I'm doing it by testing the applications
that I have running through that link to the new subnet.  I guess
I could also sniff the wire using ethereal or something to see that the
traffic was encrypted.  The logs also show that the link is active, and
with the verbose level turned up - you can probably get all kinds of 
info in the log file.

Doug

>>> "chiew yock sang" <[EMAIL PROTECTED]> 05/05/04 10:48PM >>>
Can you tell me what is the difference between openVPN and IPSec? Is it 
openVpn only meant for wireless client?

How to know the VPN capability router is working? In other words, how to 
test it?

Thanks

P/s I have setup a router and it is working now


From: "Doug Hite" <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Subject: Re:[leaf-user] vpn capability router
Date: Wed, 05 May 2004 09:01:42 -0500

If I were pressed on time, I would do this -

Use Bering 1.2 stock.
Set up 1 router, and get it working.
add the ifconfig and openvpn packages as found here -
http://leaf.sourceforge.net/devel/jnilo/bering/latest/packages/ 
http://lrp.steinkuehler.net/Packages.htm 

add tun.o as found here -
http://download.sourceforge.net/leaf/Bering_1.2_modules_2.4.20.tar.gz 

Set up openvpn using the instructions here and here -
http://leaf.sourceforge.net/doc/guide/buopenvpn.html 
http://www.shorewall.net/OPENVPN.html 

Duplicate to 2nd router, and adjust configuration.

I set up a test vpn using these steps in about an hour.  Its very easy if
you have experience with LEAF.

Things to watch out for -
1) Watch the size on the disk - you will need to remove unused packages
2) In setting up the VPN, use "shorewall clear" and get it working, then
reactivate the firewall and test again.
3) If you follow the shorewall steps exactly - the firewall will not have
access to the vpn, so testing connection from the firewall to the remote
vpn may not be the best place to do it.  Use clients behind the
firewall, or open up access.

Doug

 >I'm currently studying, my lecturer asked me to do a router with VPN
 >capability with floppy disk(s). I have tried a for quite long and still
 >haven get the result. I don't know what has gone wrong.
 >
 >Can anyone show me the proper way to start? I'm willing to start all over
 >again to make sure I'm in the right track.
 >
 >I'm just hoping I can finish this project on time.
 >
 >Thanks.




-------------------------------------------------------
This SF.Net email is sponsored by: Oracle 10g
Get certified on the hottest thing ever to hit the market... Oracle 10g.
Take an Oracle 10g class now, and we'll give you the exam FREE.
http://ads.osdn.com/?ad_id149&alloc_id�66&op=click 
------------------------------------------------------------------------
leaf-user mailing list: [EMAIL PROTECTED] 
https://lists.sourceforge.net/lists/listinfo/leaf-user 
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html 

_________________________________________________________________
Are you in love? Find a date on MSN Personals http://match.msn.com.my/ 




-------------------------------------------------------
This SF.Net email is sponsored by Sleepycat Software
Learn developer strategies Cisco, Motorola, Ericsson & Lucent use to
deliver higher performing products faster, at low TCO.
http://www.sleepycat.com/telcomwpreg.php?From=osdnemail3
------------------------------------------------------------------------
leaf-user mailing list: [EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user
SR FAQ: http://leaf-project.org/pub/doc/docmanager/docid_1891.html

Reply via email to