I'm not seeing anything helpful there. I have worked out the pf problem, still have difficulty with how to pass DNS to the resolver on the responder.
Dale On 11/16/19, Clay Daniels <[email protected]> wrote: > Check out this: > > https://man.openbsd.org/iked.8 > > History > > The iked program was written by Matthew Grooms ( [email protected] ) as > part of the Shrew Soft ( http://www.shrew.net ) family of IPsec products. > > On Sat, 16 Nov 2019, Dale C. wrote: > >> Date: Sat, 16 Nov 2019 12:44:21 -0700 >> From: Dale C. <[email protected]> >> To: [email protected] >> Subject: Iked/unbound >> >> Hi there, >> >> I'm trying to setup iked. I have it working with the exception of DNS. >> >> I've put the responders conf files here: https://bpaste.net/raw/LH4O2 >> >> My question is, what is the right way to forward DNS to a local >> unbound resolver on the responder? >> >> I'm also not sure why I need the line: pass in quick from <goodhosts> >> in the responders pf.conf... I can't connect without it, though the >> preceeding lines should be allowing that connection? >> >> Thanks for any clarification! >> >> Dale >> >> > > [email protected] > SDF Public Access UNIX System - http://sdf.org >

