Gentoo Archives: gentoo-user

From: Mick <michaelkintzios@×××××.com>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] How to IPSEC "M$oft" VPN client setup
Date: Sun, 17 May 2009 11:07:15
Message-Id: 200905171207.44339.michaelkintzios@gmail.com
In Reply to: Re: [gentoo-user] How to IPSEC "M$oft" VPN client setup by Mick
1 On Sunday 17 May 2009, Mick wrote:
2 > Thanks Graham,
3 >
4 > On Saturday 16 May 2009, Graham Murray wrote:
5 > > Here are some samples.
6 > >
7 > > /etc/racoon/racoon.conf
8 > >
9 > > /etc/racoon/psk.txt
10 > >
11 > > /etc/ipsec.conf
12 >
13 > Do I need a /etc/setkey.conf file? How do I create it?
14 >
15 > When I run '/etc/init.d/racoon start' this is what I get:
16 > ===========================================
17 > # /etc/init.d/racoon --verbose restart
18 > * Loading ipsec policies from /etc/ipsec.conf.
19 > * Starting racoon ...
20 > /usr/sbin/racoon: invalid option -- '4'
21 > usage: racoon [-BdFv] [-a (port)] [-f (file)] [-l (file)] [-p (port)]
22 > -B: install SA to the kernel from the file specified by the
23 > configuration file.
24 > -d: debug level, more -d will generate more debug message.
25 > -C: dump parsed config file.
26 > -L: include location in debug messages
27 > -F: run in foreground, do not become daemon.
28 > -v: be more verbose
29 > -a: port number for admin port.
30 > -f: pathname for configuration file.
31 > -l: pathname for log file.
32 > -p: port number for isakmp (default: 500).
33 > -P: port number for NAT-T (default: 4500). [ !! ]
34 > ===========================================
35 >
36 > I am not sure I do this right. The remote router's LAN is 10.10.10.0/24.
37 > This is the same like my local LAN's subnet. My local LAN ip is
38 > 10.10.10.5.
39 >
40 > The remote router is giving (or is it expecting?) addresses for clients in
41 > the 172.16.1.0/24 subnet. How should I configure the /etc/ipsec.conf file?
42
43 The more I try to use VPN the more I love SSH!
44
45 http://bugs.gentoo.org/87920
46 --
47 Regards,
48 Mick

Attachments

File name MIME type
signature.asc application/pgp-signature

Replies

Subject Author
Re: [gentoo-user] How to IPSEC "M$oft" VPN client setup Michael Higgins <linux@×××××××.org>