LinuxQuestions.org

LinuxQuestions.org (/questions/)
-   Linux - Software (https://www.linuxquestions.org/questions/linux-software-2/)
-   -   Freeswan , Windows , tunneling (https://www.linuxquestions.org/questions/linux-software-2/freeswan-windows-tunneling-73254/)

royss 07-16-2003 09:53 AM

Freeswan , Windows , tunneling
 
Hi,

I have a qn. i've been searching the web for good vpn software and i found a few.
One of them is freeswan, which i used before to set up to network connected with freeswan.(it worked!)

Now i'm asked to make a configuration with freeswan/poptop or whatever to let remote users connect trough a vpn BUT with a ip of the remote network.
So say i have a network 10.0.0.0/8 and i have remote ADSL users with windows machines (2k/xp).
is it possible to use freeswan to give them a ip of that network dynamicly so they appear with a 10.x.x.x addres ?
With the standard road warrior setup you can setup the VPN but it wil not have a 10.x.x.x addres.(and as far as i know not dynamicly)
Can anyone help me with this one please..

Greets

Royss

cnjohnson 07-16-2003 11:13 AM

Re: Freeswan , Windows , tunneling
 
Quote:

Originally posted by royss
Hi,

I have a qn. i've been searching the web for good vpn software and i found a few.
One of them is freeswan, which i used before to set up to network connected with freeswan.(it worked!)

Now i'm asked to make a configuration with freeswan/poptop or whatever to let remote users connect trough a vpn BUT with a ip of the remote network.
So say i have a network 10.0.0.0/8 and i have remote ADSL users with windows machines (2k/xp).
is it possible to use freeswan to give them a ip of that network dynamicly so they appear with a 10.x.x.x addres ?
With the standard road warrior setup you can setup the VPN but it wil not have a 10.x.x.x addres.(and as far as i know not dynamicly)
Can anyone help me with this one please..

Greets

Royss

You won't be able to get frees/wan to do this, and with a little reflection you'll see why. If you tamper with the headers they will fail to authenticate and frees/wan will drop the packets. So, if the headers are to be rewitten, it will have to be after frees/wan decypts them.

This presents you with another problem. How to assign unique IP's dynamically based on source route. We're at my level of incompetence, here, but surely a firewall would do this, or someother software that can dynamically rewrite the headers based on source.

So, while frees/wan can't do this, I be someone else can.

royss 07-16-2003 11:19 AM

ok.. but do you know any other software like there that will allow this ?

i've read the poptop manual and it seems that its possible with poptop(ppp).


All times are GMT -5. The time now is 09:15 PM.