Re: [Users] Why nobody help me?

From: Whit Blauvelt (whit_at_transpect.com)
Date: Tue Dec 03 2002 - 05:25:01 CET


On Tue, Dec 03, 2002 at 09:11:40AM +0800, swcims wrote:

> I want to set up IPSec Tunnel in these topologies using FS-1.99:
>
> |PC A(Win98/2k/xp)|---------|Modem|-----------Internet------------|ADSL Modem|----|SOHO Router(NAT)(uClinux)|-----|PC B(Win98/2k/xp)|
> or
> |PC A(Win98/2k/xp)|---------|ADSL Modem(NAT)|--------Internet---------------|ADSL Modem|----|SOHO Router(NAT)(uClinux)|-----|PC B(Win98/2k/xp)|
>
> I want to set up IPSec tunnel between PC A with SOHO Router.
> Because Modem or ADSL Modems have dynamic IPs,I have no idea that whether Road Warrior can work.

One of the standard setups you can find described in the list archives here
and in the FreeS/WAN docs (especially see the FAQ) should work, except
because you have dynamic IPs on both ends you will need to at least
reconfigure the Road Warrior end for the currently assigned IP of the other
end - and as well possibly reconfigure the other end for the IP it is
currently assigned. That is, you probably need to treat one end just as if
it has a fixed IP, and change the configuration at both ends to reflect that
end's dynamic IP each time the dynamic IP changes.

You might see if your ADSL provider has an option to get a fixed IP. Many do
for an extra $10 a month or so. Then you could just use a standard setup.
For NAT-T you might want to just go to SuperFreeSwan at
http://www.freeswan.ca/.

Whit
_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users



This archive was generated by hypermail 2.1.5 : Wed Dec 04 2002 - 05:20:58 CET