Re: cisco and linux VPN

From: administrator (administrator_at_integrated-group.com)
Date: 12/06/03

  • Next message: Arden Norder: "Re: SV: [Cron <root@mail> sh /root/save_slox]"
    To: redhat-list@redhat.com
    Date: Sat, 06 Dec 2003 14:42:39 +0200
    
    

    well yes i sorta was like short on details , now i know what i'm gonna
    do ( i guess,correct me please )

    we have 3 vpns established on an 2600 router that is located at our ISP
    (the router is remote)

    and here on my local lan i have this set up

    * internet > modem > cisco 805 router > Redhat 9(NATting here) < switch
    < users

    we need to access the vpns on the 2600 router

    ^ that was my question

    so far i got :
    i will use IPsec , and establish sn encrypted tunnel (vpn) between the
    linux server and the 2600 cisco , on the cisco 2600 , a route from the
    one interface to the other is configured , so that traffic from the
    linux will be fwded to the already established 3 vpns
    and on the linux there will be a static route so that any traffic from
    LAN to vpns ips will take the tunnel :)

    vpn will be between the linux and cisco
    on Linux will use Free S/WAN

    no pptp i guess
    is all that i just said OK , or lacks anything , i did configure the
    cisco , working on freeswan now , someone mentioned spit-tunneling to me
    , what is that ??

    Jason Dixon wrote:

    >On Thu, 2003-12-04 at 09:30, Willem van der Walt wrote:
    >
    >
    >>No, but GRE is what passes through your nat ant routers.
    >>All equipment does not support the handeling of GRE.
    >>Cisco and linux does.
    >>Do you have a particular problem or do you just want to know
    >>how it fits together before you start?
    >>There is a particular port that is accessed on the server end.
    >>This is with pptp.
    >>If it is just nat and no firewall, it aught to work.
    >>
    >>
    >
    >Maybe it's just my lack of familiarity with Cisco VPNs, but I wonder why
    >you've assumed he's using PPTP. Most [non-Microsoft] VPNs out there use
    >IPSec, which utilizes one or both of ESP (Encapsulated Security Payload)
    >and AH (Authentication Header). IPSec-based VPNs do not use GRE.
    >
    >Granted, the original poster was lean on details, I didn't fully
    >understand his question.
    >
    >
    >

    -- 
    redhat-list mailing list
    unsubscribe mailto:redhat-list-request@redhat.com?subject=unsubscribe
    https://www.redhat.com/mailman/listinfo/redhat-list
    

  • Next message: Arden Norder: "Re: SV: [Cron <root@mail> sh /root/save_slox]"

    Relevant Pages

    • Re: Routing problem
      ... I think you need 2 VPNs, ... So you need you home router to work as a pptp client to the linux box too. ...
      (microsoft.public.windowsxp.general)
    • Re: SUSE Linux 9 and VPN - newbie
      ... I would guess that your firewall is not configured to pass all the packets ... Packet traces, software versions/configuration, and simple ASCII network ... "Building Linux Virtual Private Networks (VPNs)" by Kolesnikov and Hatch ...
      (alt.os.linux.suse)
    • Re: Which Linux OS best for beginner to setup as Web / Mail server / Internet sharer and firewall?
      ... >> connecting it between your DSL modem and your linux box. ... > Some of them also directly support a VPN and others that don't can be ... makes configuring the VPNs easy. ...
      (comp.os.linux.networking)
    • Re: Replaced NT 4 Server with Linux
      ... Maybe later when i will be more confidential with linux. ... Cisco both with the same configuration i'm doing now with your help. ... > off by a second line of defense (the Linux firewall machine you don't ... > router and keeping track of connections, running IDS's, etc - your Cisco ...
      (comp.os.linux.security)
    • Re: Firewall Router Hardware oder Software
      ... > das Cisco Angebot umfasst mehrere Optionen unter anderem auch die von Dir ... Wenn dann die Option mit der PIX. ... ein Router, und kein Sicherheitsprodukt. ... Linux bietet - aufgrund seiner Offenheit - mehr ...
      (de.comp.security.firewall)