Displaying 20 results from an estimated 400 matches similar to: "udp broadcast over ipsec"
2004 Jul 13
2
Port 445 & Port 139 banned
Because of security reasons, my school has blocked tcp port 445 and 139.
This make it impossible to for my window xp desktop to the remote samba service on Linux.
Although the samba sercie on Linux and change its port by a "-p" option. But windows always
look for 445 and 139 port.
I've tried a lot of ways to work it out including local port redirection but none of them works.
Is
2005 Apr 12
1
Unified authentication
Greetings. Apologies if this has been asked before. I've gone
through Google and the archives to no avail.
I am seeking to implement a unified authentication mechanism for a
small(Less than 50 users) setup. I've been trying to wrap my head
around PAM and SAMBA. It almost seems like it can be done, but I can't
quite convince myself.
Most of my users are Windows
2003 Jan 14
1
Question on Shorewall with FreeSwan
I am new to Shorewall and FreeSwan, please excuse my ignorance I was
wondering if someone could help me.
I had help getting my FreeSwan running with the following iptables
commands:
iptables -I FORWARD -s 0/0 -d 192.168.1.0/24 -i ipsec0 -o eth1 -j
ACCEPT
iptables -I FORWARD -s 192.168.1.0/24 -d 0/0 -i eth1 -o ipsec0 -j
ACCEPT
If I manually run this FreeSwan works, however I am not sure
2003 Jan 14
1
Firewalling multiple FreeSwan connections
Hi all!
I have got a vpn connection set up using FreeSwan and shorewall.
Everything works fine but I want to add another subnet to the whole. This
means that 1 box will get two net-to-net connections.
I want to limit the services on one subnet however. Cuurently I have
defined a vpn zone for the current connection and allow all vpn<->loc
traffic.
How would I go about in tightening the
2004 Oct 20
11
Shorewall, Freeswan and SuSE 9.1
I have been using shorewall and freeswan successfully for 3 or more
years now. But they have all been using the Linux 2.4 kernel. My current
configuration is (as the title suggests) using SuSE 9.1 which has a
2.6.5 kernel and freeswan 2.0.4 built-in.
After much reading and a lot of trial and error, I did get this
combination to work with Shorewall 2.0.9. It is happily talking to an
older Mandrake
2002 Sep 29
7
[Fwd: Building custom _updown script for freeswan to make it talk with shorewall]
Tuomo Soini wrote:
> You don''t happen to read shorewall-devel mailinglist ?
I read it -- I just didn''t know what to make of your post and it arrived
while I was on vacation.
What exactly are you trying to accomplish that Shorewall isn''t doing for
you now?
e.g.
/etc/shorewall/zones
rw Roadwarriors Road Warriors
/etc/shorewall/interfraces
rw ipsec+
2002 Feb 28
2
Problem with FreeSwan and Shorewall on a LEAF(Oxygen) based router.
Hello,
I seem to have the Freeswan IPSEC tunnel working between my two sites,
but I am still having a problem that looks to be because of something I have
configured wrong in my shorewall setup..
I have a LEAF Oxygen < 1.9 heavily modifed firewall setup.. Using
FreeSwan 1.91, and Kernel 2.4.8. Modified to use IPTables and
standard Debian network/interfaces. I am also using Shorewall
2003 May 09
3
Windows 2000 Profiles Through Freeswan VPN
Hello,
I have setup a samba server at my office as a PDC it stores the profiles
on the server fine. I can access the profiles from any computer in the
office just fine. My problem is that I work from home 4 days a week and
need to access my work profile. I currently VPN into the office network
via freeswan. I can log into the the domain from the vpn'd connection
and I can access the samba
2002 Sep 21
0
Building custom _updown script for freeswan to make it talk with shorewall
I have a plan to make freeswan and shorewall talk to each other.
Shorewall doesn''t currently have proper handles to make ipsec and
firewall work properly together and I''m planning on building a custom
_updown script for freeswan to make it communicate with shorewall.
How can I make shorewall work properly with different road warriors with
different dynamic ip-addresses and
2005 May 23
3
Betr.: VPN
IF you are not stuck to IPSec, you might want to take a look at OpenVPN (www.openvpn.org). I found OpenVPN easier to install than FreeSWAN (an IPSEC VPN) and have setup an OpenVPN solution between my German office and our mainoffice in a matter of hours.
Thom van der Boon
E-Mail: Thom.van.der.Boon at vdb.nl
=====
Thom.H. van der Boon b.v.
Havens 563
Jan Evertsenweg 2-4
NL-3115 JA Schiedam
2005 May 23
2
VPN
Hi list, I am trying to create a VPN between two different locations. On
the first location we have a cisco pix 525 Natting the internal
192.168.100.x network, while on the second location we have a Centos3
box Natting via iptables the internal 192.168.10.x netowrk. My goal is
to connect this 2 over the internet via IPsec. I created the IPsec
Net2Net via the network configuration graphic
2002 Oct 10
0
core dump from rsync
-----BEGIN PGP SIGNED MESSAGE-----
The FreeSWAN project uses rsync to keep our FTP repository up-to-date.
The FTP server is at xs4all.nl, and we rsync to one of their FreeBSD boxes
(xs1.xs4all.nl) over SSH.
We have been experiencing core dumps from the remote rsync. Initially this
was with the XS4ALL provided rsync in /usr/local/bin/rsync. Since I didn't
have access to the source code for
2003 Jun 10
2
Opportunistic VoIP
This is an idea from FreeSWAN, which was implemented in the recently released version 1.0.
Basically the idea is that FreeSWAN sites automatically encrypt traffic between them
when possible, without having to set up the link ahead of time.
How this works is:
The sites publish some info in DNS.
FreeSWAN gets some traffic destined for that site.
- looks up the info in DNS
- if the info is there:
2004 Jan 15
4
shorewall, freeswan and kernel crypto-api
Hello,
I''ve finally managed to setup a firewall with freeswan 2.04 using the
kernel crypto api (backported from kernel 2.6).
(Almost) everything seems to work fine if I disable shorewall, but
packets are filtered whe shorewall is active.
I''ve already read a past thread on the subject and I followed all the
hints and it actually partially works: my lan I can access the remote
2004 Aug 12
0
Advanced Routing and FreeSwan
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Hello,
I''m trying to setup a central IPSEC-Gateway with several ipsec tunnels.
Some are to be routed over one leased line, some over the other leased
line. Both leased lines have their own public ip adress.
The setup looks kinda like this:
eth1(ipsec0)--ISP0--Internet--eth1-Linux1-eth0--Subnet1
/
2003 Jan 08
1
IPSec pass through
I''m getting insane here. I''m running shorewall 1.3.11 with iptables
1.2.5 and freeswan 1.97 on a 2.4.18-8 kernel aka MNF. The setup is a
followed:
Lan (192.168.1.x) - FW (eth1 192.168.1.254 - eth0 64.x.y.71) - router
64.x.y.65 (which is default GW on eth0) -internet - 161.a.b.c (FW-1)
So a windows client with checkpoint tries to connect to a vpn-1 server
on the internet. The
2002 Jan 02
0
Shorewall, FreeS/WAN, and IPSEC
>sample setups of freeswan working with shorewall?
I just implemented this a few days ago. In my case it was the simple
scenario of two private subnets (with different private network numbers!)
already equipped with Shorewall firewalls on which I added Freeswan. The
hardest part was being patient enough for the other end''s firewall (a 486=
)
to compile the patched kernel. I basically
2004 Jan 07
1
Forward some traffic to VPN
Hi. I am trying to force some traffic that goes to address 203.7.93.94
through a VPN tunnel. I use freeswan 1.98b and Shorewall 1.4.6c in one
machine. The 203.7.93.94 is in the DMZ on the other end. (Both ends use
the same shorewall and freeswan).
I have successfully set up a tunnel between the two network (using a
point to point topology, not hub).
I added a static routing that redirect
2003 Jul 28
10
IPSec
Hi All,
I need to configure a VPN between a FreeBSD-4.8 box and
a Linux (FreeS/WAN) box.
In the Linux side, the network administrator installed FreeS/WAN
with RSA authentication without IKE support.
Does anybody knows if is possible to make my FreeBSD box
connect a VPN with the Linux box?
If so, could point me to a documentation about how to install
IPSec with RSA authentication and how to make
2003 May 28
4
routing thru shorewall
Hi,
On my network, I use real IP numbers for all of my
hosts. They all get nat''d at the gateway. I use
real IPs because sometimes someone needs to connect
directly to a host behind the firewall. With my old
firewall, I had a trusted-hosts file with trusted host
IP numbers in it. My hosts talking to external trusted
hosts would not have their IPs nat''d instead they were