Re: IPSec+VPN+ipfw questions

2003-06-23 Thread Oleg Semyonov
"Brent Wiese" <[EMAIL PROTECTED]> To: "'Oleg Semyonov'" <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]> Sent: Tuesday, June 24, 2003 4:26 AM Subject: RE: IPSec+VPN+ipfw questions A few things come quickly to mind... First, you need "gateway_enable=YES&

RE: IPSec+VPN+ipfw questions

2003-06-23 Thread Brent Wiese
A few things come quickly to mind... First, you need "gateway_enable=YES" in your rc.conf... I think. I know you need it for MPD (pptp tunneling). Second, you cannot have physical routes to the remote side "private" network. > 1) Is it possible to use ipfw rules to count different kinds > of t

IPSec+VPN+ipfw questions

2003-06-23 Thread Oleg Semyonov
Hi! I wish to use IPSec to provide secure channels between some LAN machines (Windows 2000) and a FreeBSD gateway which acts as a NAT router to the Internet upstream provider. Each channel works in IPSec transport mode (no tunnel, host-to-host only). FreeBSD runs racoon to provide IKE services for