Hello: My name is Teo Romera.
I am not pretty sure about what i try to do... but i'll try my best to explain it. I have an enterasys x-pedition xsr-1850 security router. I am setting up a remote access service to a vlan. It is already working with pptp as encapsulation protocol and radius as authentication method. I know pptp is not the best choice and now i want to use IPsec for the tunneling and certificates for the authentication part. So i guess i need a CA for the router to check the remote access clients' certificates and for the clients to check the router's certificate... is that it? The enterasys router uses SCEP to obtain its cert and the ca's cert if i did not misunderstood the manual... so i need to install OpenCA with SCEP support. I only have one machine with debian stable on it, but in the OpenCA documentation i keep reading about a an online server and an offline server. Can i install everything in just one machine? if so.. how? Ok... so i need SCEP, CA and RA. Do i need something else? Do i need to setup a hierarchy? Do i need LDAP? I'm afraid i lack of a global view of the solution... and i would appreciate any help. Thanks in advance. -- Teo Romera <[EMAIL PROTECTED]> ------------------------------------------------------- The SF.Net email is sponsored by EclipseCon 2004 Premiere Conference on Open Tools Development and Integration See the breadth of Eclipse activity. February 3-5 in Anaheim, CA. http://www.eclipsecon.org/osdn _______________________________________________ Openca-Users mailing list [EMAIL PROTECTED] https://lists.sourceforge.net/lists/listinfo/openca-users
