Hello:

My name is Teo Romera.

I am not pretty sure about what i try to do... but i'll try my best to
explain it.

I have an enterasys x-pedition xsr-1850 security router. I am setting up
a remote access service to a vlan. It is already working with pptp as
encapsulation protocol and radius as authentication method. I know pptp
is not the best choice and now i want to use IPsec for the tunneling and
certificates for the authentication part.

So i guess i need a CA for the router to check the remote access
clients' certificates and for the clients to check the router's
certificate... is that it?

The enterasys router uses SCEP to obtain its cert and the ca's cert if i
did not misunderstood the manual... so i need to install OpenCA with
SCEP support.

I only have one machine with debian stable on it, but in the OpenCA
documentation i keep reading about a an online server and an offline
server. Can i install everything in just one machine? if so.. how?

Ok... so i need SCEP, CA and RA. Do i need something else? Do i need to
setup a hierarchy? Do i need LDAP?

I'm afraid i lack of a global view of the solution... and i would
appreciate any help.

Thanks in advance.
-- 
Teo Romera <[EMAIL PROTECTED]>



-------------------------------------------------------
The SF.Net email is sponsored by EclipseCon 2004
Premiere Conference on Open Tools Development and Integration
See the breadth of Eclipse activity. February 3-5 in Anaheim, CA.
http://www.eclipsecon.org/osdn
_______________________________________________
Openca-Users mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/openca-users

Reply via email to