Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]
Groups > comp.os.linux.misc > #5410
| From | J G Miller <miller@yoyo.ORG> |
|---|---|
| Newsgroups | comp.os.linux.misc |
| Subject | Re: PPTP and NAT, IPSec and vpnc to Draytek Vigor |
| Date | 2012-05-24 13:15 +0000 |
| Organization | A noiseless patient Spider |
| Message-ID | <jplca7$9o4$1@dont-email.me> (permalink) |
| References | <oigg89x2j4.ln2@news.roaima.co.uk> <jp7uct$1t8$1@dont-email.me> <9hov89xkj4.ln2@news.roaima.co.uk> |
On Wed, 23 May 2012 19:57:16 +0100, Chris Davies wrote:
> Thank you for the push, even if I still don't really have a clue why what
> I've done has worked.
Strongswan is a major piece of software so you will not understand it
all in one day. (I only understand a few small parts of it after
struggling with it for quite a while to understand the configuration
file parameters).
Best to look at the diagrams and to re-read the configuration files
and see if you can work out what the lines are doing, if you want to
understand why it works ;)
> Let's hope it works when I get back home and my own router plays a
> part in the equation again.
Remember though that if you have
pcA -----> router1 ======== router2 <------ pcB
then the IPSEC is a tunnel going from pcA to pcB through router1 and router2.
What you have to worry about is that router1 and router2 allow IPSEC pass
through, and that if NAT is involved you have to provide a keep alive port
pass from the router1 to pcA and router2 to pcB in the rules
on each router respectively (if I remember the setup correctly).
It is possible to get VPN/IPSec enabled routers which will create an
IPSEC tunnel from themselves to another VPN/IPSec enabled router
and this can be used to allow two subnets to communicate with each other
more easily than that pcA to pcB.
Back to comp.os.linux.misc | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread
PPTP and NAT, IPSec and vpnc to Draytek Vigor Chris Davies <chris-usenet@roaima.co.uk> - 2012-05-18 01:09 +0100
Re: PPTP and NAT, IPSec and vpnc to Draytek Vigor Stan Bischof <stan@worldbadminton.com> - 2012-05-18 13:30 +0000
Re: PPTP and NAT, IPSec and vpnc to Draytek Vigor Chris Davies <chris-usenet@roaima.co.uk> - 2012-05-19 01:07 +0100
Re: PPTP and NAT, IPSec and vpnc to Draytek Vigor The Natural Philosopher <tnp@invalid.invalid> - 2012-05-19 01:16 +0100
Re: PPTP and NAT, IPSec and vpnc to Draytek Vigor J G Miller <miller@yoyo.ORG> - 2012-05-19 10:58 +0000
Re: PPTP and NAT, IPSec and vpnc to Draytek Vigor Chris Davies <chris-usenet@roaima.co.uk> - 2012-05-23 19:57 +0100
Re: PPTP and NAT, IPSec and vpnc to Draytek Vigor J G Miller <miller@yoyo.ORG> - 2012-05-24 13:15 +0000
Re: PPTP and NAT, IPSec and vpnc to Draytek Vigor Chris Davies <chris-usenet@roaima.co.uk> - 2012-05-24 15:40 +0100
Re: PPTP and NAT, IPSec and vpnc to Draytek Vigor J G Miller <miller@yoyo.ORG> - 2012-05-24 15:49 +0000
Re: PPTP and NAT, IPSec and vpnc to Draytek Vigor Chris Davies <chris-usenet@roaima.co.uk> - 2012-05-24 23:54 +0100
Re: PPTP and NAT, IPSec and vpnc to Draytek Vigor J G Miller <miller@yoyo.ORG> - 2012-05-25 00:10 +0000
Re: PPTP and NAT, IPSec and vpnc to Draytek Vigor Chris Davies <chris-usenet@roaima.co.uk> - 2012-05-25 08:51 +0100
csiph-web