Scott Cuyle Fritzinger wrote:
> If they are just going to be Unix systems connecting in, check
> out vpnd.  *VERY* simple to set up and maintain. Mine has been
> running for years without any problems.

Thanks!  I'm hoping to allow Win32 clients as well, but this will
be a good project anyway, since my LAN consistsof Debian,
FreeBSD, and OpenBSD. I'll check that out!

> For interoperability with other OS's, check out FreeSWAN
> (IPSEC) and PPTPd. Both of those require patches to a 2.4.x
> kernel.

I looked at FreeS/WAN but couldn't find any documentation on use
with the 2.4 kernel; only 2.0 and 2.2.  Have you seen any more
recent documentation?

> A quick note: MS-CHAPv1 being used for authentication in PPTP
> is vulnerable to a very easy attack. Try to use a different
> auth mechanism.

Yeah, I've heard about the security issues w/ PPTP and would much
prefer to run an IPsec'ish solution.

> Hope that helps a bit.

Yes, thanks!

Tim
-- 
Our OS who art in CPU, Unix be Thy name.
Thy programs run, Thy syscalls done,
In kernel as it is in user.

Attachment: pgp00000.pgp
Description: PGP signature

Reply via email to