Re: [Users] IPSec WinXP interop

2004-01-01 Thread Antony Gelberg
On Wed, Dec 31, 2003 at 04:04:39PM +0100, Reinhold Plew wrote: may be you need this in your ipsec.conf to disable OE Thanks to you and Andreas, that worked great. I'm now getting this in my /var/log/auth.log: Jan 2 00:30:35 mailhost pluto[7154]: mailhost-rw[2] 82.68.107.174 #2: Peer ID is

Re: [Users] IPSec WinXP interop

2004-01-01 Thread Antony Gelberg
On Wed, Dec 31, 2003 at 04:04:39PM +0100, Reinhold Plew wrote: may be you need this in your ipsec.conf to disable OE Thanks to you and Andreas, that worked great. I'm now getting this in my /var/log/auth.log: Jan 2 00:30:35 mailhost pluto[7154]: mailhost-rw[2] 82.68.107.174 #2: Peer ID is

Re: IPSec WinXP interop

2003-12-31 Thread Antony Gelberg
Right, I've upgraded to freeswan 2.01 from backports.org. This was because the 1.96 that I was using from Woody didn't recognise the leftprotoport and rightprotoport commands. I apt-got the source, grepped, and sure enough they weren't there. This leads me to believe that the But now I have a

Re: IPSec WinXP interop

2003-12-31 Thread Antony Gelberg
Right, I've upgraded to freeswan 2.01 from backports.org. This was because the 1.96 that I was using from Woody didn't recognise the leftprotoport and rightprotoport commands. I apt-got the source, grepped, and sure enough they weren't there. This leads me to believe that the But now I have a

Re: IPSec WinXP interop

2003-12-28 Thread Antony Gelberg
On Fri, Dec 26, 2003 at 01:55:42AM +0100, Valentin Vidic wrote: On Fri, Dec 26, 2003 at 12:18:24AM +, Antony Gelberg wrote: Perhaps... First get that private key working and then try again. Valentin Right, I sorted the private key problem. It loads happily now. But I do get: Dec 29

Re: IPSec WinXP interop

2003-12-28 Thread Antony Gelberg
On Fri, Dec 26, 2003 at 01:55:42AM +0100, Valentin Vidic wrote: On Fri, Dec 26, 2003 at 12:18:24AM +, Antony Gelberg wrote: Perhaps... First get that private key working and then try again. Valentin Right, I sorted the private key problem. It loads happily now. But I do get: Dec 29

Re: IPSec WinXP interop

2003-12-25 Thread Antony Gelberg
On Thu, Dec 25, 2003 at 04:18:39PM +0100, Valentin Vidic wrote: On Wed, Dec 24, 2003 at 12:49:31AM +, Antony Gelberg wrote: My first post here - long time d-u subscriber. I'm trying to set up a VPN where WinXP roadwarriors can access a LAN that sits behind a Linux router. I want

Re: IPSec WinXP interop

2003-12-25 Thread Antony Gelberg
On Thu, Dec 25, 2003 at 04:18:39PM +0100, Valentin Vidic wrote: On Wed, Dec 24, 2003 at 12:49:31AM +, Antony Gelberg wrote: My first post here - long time d-u subscriber. I'm trying to set up a VPN where WinXP roadwarriors can access a LAN that sits behind a Linux router. I want

Re: IPSec WinXP interop

2003-12-24 Thread Antony Gelberg
On Wed, Dec 24, 2003 at 01:40:46PM +0100, Jose Luis Domingo Lopez wrote: On Wednesday, 24 December 2003, at 00:49:31 +, Antony Gelberg wrote: When I try to log in, I get Error 792: The L2TP connection attempt failed because security negotiation timed out. I don't get any verifying

Re: IPSec WinXP interop

2003-12-24 Thread Antony Gelberg
On Wed, Dec 24, 2003 at 01:40:46PM +0100, Jose Luis Domingo Lopez wrote: On Wednesday, 24 December 2003, at 00:49:31 +, Antony Gelberg wrote: When I try to log in, I get Error 792: The L2TP connection attempt failed because security negotiation timed out. I don't get any verifying

IPSec WinXP interop

2003-12-23 Thread Antony Gelberg
Hi all, My first post here - long time d-u subscriber. I'm trying to set up a VPN where WinXP roadwarriors can access a LAN that sits behind a Linux router. I want to use X.509 certificates rather than PSKs. So I've installed freeswan and l2tpd on the router. There is quite a bit of

IPSec WinXP interop

2003-12-23 Thread Antony Gelberg
Hi all, My first post here - long time d-u subscriber. I'm trying to set up a VPN where WinXP roadwarriors can access a LAN that sits behind a Linux router. I want to use X.509 certificates rather than PSKs. So I've installed freeswan and l2tpd on the router. There is quite a bit of