Dear List,
I have now succeeded in installing an OpenVPNZ on my WRAP LEAF Box.
Everything works very well. This sort of surprised me, I am used to
working with professional IKE/IPSEC VPNs and OpenVPN seems at least as good.
For information, one small problem remains that is LEAF orientated: The
boot-up process starts OpenVPN too soon, ntpsimpl needs to be started
first. This acn be fixed but ntpsimpl, although modified with a script
from Erich Titl does not actually set the system date for quite some
time after it has fetched the time from the Internet.
For OpenVPN this causes the startup process to reject all local
Certificates as being invalid (this is true - when a Certificate's date
lies in the apparent future, the Certificate is indeed not valid).
This is not corrected by waiting. A new reboot is required. (To
reiterate, the problem is caused by the ISP rejecting logon attempts for
a period shortly after a disconnect - for example a 10 second power
failure would cause the system to fail and stay failed).
I will think about this and experiment with solutions. Any suggestions
are, of course, very welcome.
Bob
-------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc. Do you grep through log files
for problems? Stop! Download the new AJAX search engine that makes
searching your log files as easy as surfing the web. DOWNLOAD SPLUNK!
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=103432&bid=230486&dat=121642
------------------------------------------------------------------------
leaf-user mailing list: [email protected]
https://lists.sourceforge.net/lists/listinfo/leaf-user
Support Request -- http://leaf-project.org/