Displaying 20 results from an estimated 9000 matches similar to: "IPSEC How To?"
2013 Feb 01
2
Centos as l2tp/ipsec-Client
Hello,
i need to configure a centos 6.3 - server as an l2tp/ipsec-client. I
have no idea how I there previous or if this is even possible.
Where one might find appropriate instructions? Google is not very
helpful, without any idea.
Thanks cami
2007 Sep 19
5
Choosing VPN Server
Hi,
I am facing a task of choosing vpn server. I do not know which is better.
The one distributed with CentOS4.5 only supports pppd (or maybe pptp but I
cannot find it).
If* *I want to use PPTP or L2TP, which one should I choose? OpenVPN? Poptop?
Thanks.
-------------- next part --------------
An HTML attachment was scrubbed...
URL:
2016 Jul 07
5
update clamav to 0.99.2
Helo,
update is in EPEL repository.
on startup, clamd does not further create clamd.sock and clamd.pid
clamd service stops without any message - even in debug mode.
It's a nightmare.
Helmut
--
Viele Gr??e
Helmut Drodofsky
Internet XS Service GmbH
He?br?hlstra?e 15
70565 Stuttgart
Gesch?ftsf?hrung
Dr.-Ing. Roswitha Hahn-Drodofsky
HRB 21091 Stuttgart
USt.ID: DE190582774
Tel. 0711
2019 Dec 01
2
update CentOS 7 at Nov 05 2019
yum update was run
23.10.19 and then
05.11.19
to the beginning of the update 5.11.2019 kernel logging to
/var/log/messages was ok.
During the update at 5.11.2019 logging to /var/log/messages finished. I
persume, this bug began during processing updates. yum-log shows:
...........
Nov 05 14:56:54 Installed: virt-viewer-5.0-15.el7.x86_64
Nov 05 15:59:28 Installed: nbdkit-1.8.0-1.el7.x86_64
2019 Feb 07
2
persistent generic device for tape changer
Hello Ron,
sounds good. I have 2 tape changer. I persume, udev creates the same
link for both.
Can I modify
SYMLINK+="changer-$env{ID_SERIAL}"
The serial should be unique.
Viele Gr??e
Helmut Drodofsky
Internet XS Service GmbH
He?br?hlstra?e 15
70565 Stuttgart
Gesch?ftsf?hrung
Helmut Drodofsky
HRB 21091 Stuttgart
USt.ID: DE190582774
Fon: 0711 781941 0 <tel:+497117819410>
Fax:
2019 Feb 07
2
persistent generic device for tape changer
Hello,
mtx and therefor amanda use generic device /dev/sg<x> for tape changer.
These devices change on reboot.
How to make them persistent?
/dev/sch0 and /dev/sch1 seem to be persistent.
/dev/tape/by-id/ shows links from WWID to generic device
An UDEV rule could help? I have not found any example.
--
Viele Gr??e
Helmut Drodofsky
Internet XS Service GmbH
He?br?hlstra?e 15
70565
2020 Jan 01
2
KVM Random Reboots AMD EPYC Server
our new Server with AMD EPYC and super micro board reboots ramdonly.
There is no error message before the reboot in /var/log/messages.
we are running 2 Server with VMWare workstation without any problem.
The new server should run KVM.
older servers with AMD (before EPYC) running KVM without any problem.
any idea or recommendation?
--
Viele Gr??e
Helmut Drodofsky
Internet XS Service GmbH
2016 Apr 04
10
VPN suggestions centos 6, 7
Folks
I would like to have my windows 7 laptop communicate with my home
server via a VPN, in such a way that it appears to be "inside" my
home network. It should not only let me appear to be at home for any
external query, but also let me access my computers inside my home.
I already have this working using M$'s PPTP using my home Centos 6
gateway/router as the PoPToP server.
2015 Dec 07
2
openvpn + routing
Helmut Drodofsky wrote:
> Hello,
>
> there is one route missing:
>
> 128.0.0.0/1.
>
Did you mean 127.0.0.0?
mark
> config client:
> route-nopull
> redirect-gateway def1 bypass-dhcp
>
> best regards
> Helmut
>
> Viele Gr??e
> Helmut Drodofsky
>
> Internet XS Service GmbH
> He?br?hlstra?e 15
> 70565 Stuttgart
>
> Gesch?ftsf?hrung
2016 Jan 07
2
CentOS 6, SSD recommendations?
Hello,
because of high disk load we plan to move from disk (raid1) to ssd.
Are there recommendations for
- manufacturer
- file sytem
- raid1
The Red Hat Storage Administration Guide says:
- no raid 1
- ext4 only
is this state of the art?
I have searched list,centos.org 2015 - nothing found.
I found in the year 2012 / 2013:
https://www.centos.org/forums/viewtopic.php?t=7580
2013 Jul 12
2
rsync error 3.0.6
Hello,
I use procedures for backup with rsync. The data where "pulled" by the
backup server.
Sender: Now CentOS 5.9, receiver CentOS 6 updated on July 3.
Up to yesterday it run OK.
Today morning I made yum update to sender CentOS 5
Now I get
rsync: connection unexpectedly closed (0 bytes received so far) [receiver]
rsync error: error in rsync protocol data stream (code 12) at
2012 Jan 27
2
LSi Logic SCSI controller driver
Hello,
I have found a lot of discussions concerning the LSI Logic scsi driver.
E.g.:
https://lkml.org/lkml/2010/4/26/335
https://bugzilla.kernel.org/show_bug.cgi?id=16547
http://www.redhat.com/archives/rhl-list/2007-April/msg02661.html
VMware ESXI was updated on 28. April 2011.
Is this bug fixed in CentOS 6? RHEL 6 beta: the bug was included so far
as I have read.
--
Viele Gr??e
Helmut
2015 Apr 14
3
state of IPSec VPN on CentOS 7: Openswan, strongSwan, RPM packages
I looked in the yum repositories for CentOS 7 and I noticed that there
are no packages for any of the major open source IPSec VPN apps -
Openswan, strongSwan, etc. I'm pretty sure CentOS 6 had Openswan
packages.
What is the current consensus w.r.t. building an IPSec VPN "server"
(concentrator, whatever) on CentOS 7, that will do site-to-site
connections with Cisco hardware at
2013 Mar 04
6
Centos6 ipsec troubles
Hello,
it looks like the usual way to do ipsec on centos5 won't work anymore on
centos6
I installed ipsec-tools but an interface type IPsec is not recognized by
the kernel
ifup ipsec0
Device does not seem to be present, delaying initialization.
I am not planning to use the awful OpenSwan, I Want to sue the Kame
implementation which was working fine on CentOS5
any hints ?
thank you
2013 Jul 12
1
port for rpc.statd occupied rsync port
Hello,
booting starts /etc/init.d/nfslock. today, rpc.statd used port 873.
later starting xinetd finds port used and disabled rsync daemon.
So its more or less a lucky break, to boot CentOS and have rsync running?
In /etc/rc3.d is
S14nfslock
S56xinetd
so by design xinetd starts always after nfslock!!!!
Best regards
--
Viele Gr??e
i.V. Helmut Drodofsky
________________________________
2012 Nov 09
1
iptables: recent nolonger supported in Centos 5.8?!
Helo,
we use recent to control ip traffic.
kernel 2.6.18-308.13.1.el5 : all is OK
kernel 2.6.18-308.16.1.el5 : the first recent statement causes an error.
E.g.:
iptables -A INPUT -m state --state NEW -m recent --set -p tcp --dport 80
iptables: Unknown error 18446744073709551615
The man pages say: recent is supported.
CentOS 6: is OK
Knows anyone more?
Best regards
Helmut Drodofsky
--
Viele
2013 Mar 13
1
important spamassassin update
Hello,
njab.org will discontinue blacklist services.
On 1. March 2013 Apache published:
Bug 6913; Disabled rules/scores for njabl.org
See:
http://svn.apache.org/viewvc?view=revision&revision=1451776
Will there be an update from CentOS?
Best regards
Helmut Drodofsky
--
Viele Gr??e
Helmut Drodofsky
Internet XS Service GmbH
He?br?hlstra?e 15
70565 Stuttgart
Gesch?ftsf?hrung
2009 Aug 12
6
Shorewall (Openswan) IPSEC VPN MASQ Problem
Hi,
I have setup a IPSEC VPN using Openswan to connect a Draytek router to a
CentOS 5.2/Shorewall 4.2.9 firewall. The VPN establishes OK but I''m
getting a problem with packets from the left hand subnet getting
masqueraded rather than routed down the IPSEC VPN as though they were
going out onto the net. I''ve spent the last day searching Google and so
far I''ve hit a
2006 Nov 03
5
qos inside ipsec tunnel
Hello everybody.
I would like to do some kind of shaping inside an
ipsec tunnel implemented by Openswan and linux
2.6.18.x with xfrm (no KLIPS): for example, to
limit outbound smtp traffic inside the tunnel.
Question: where should I attach the qdisc to? Eth0?
I''m asking this, because tcpdump only see the ESP
packet on the eth0 and not the ''clear'' packet.
TIA
This is my
2016 Mar 21
5
IPSec multiple VPN setups
I second Eero's comment, use a new IPSec daemon.
Openswan was forked and became Libreswan. Paul, now a RH employee, was a
main developer for the Openswan project before he and others created the
Libreswan fork.
https://libreswan.org/
EL6 has Openswan
EL7 has Libreswan
Racoon isn't all that fun to work with.
If you have the option, ditch it and EL5 and move to a newer platform