On Monday 28 February 2005 17:14, Mike Williams wrote: > I'm running 2.6, so no ipsecX virtual interfaces :(
Got it, and this was the problem. Essentially, what I was doing was correct. It was the KAME ipsec code in 2.6 that was screwing me around. Moved back to 2.4 headers, un-nptl'isd glibc, compiled a gentoo-sources kernel, and after rebuilding openswan it magically worked! It's also nice to have ipsecX virtual interfaces, makes routing far nicer. Does anyone use openswan 2.3 yet? It's supposed to use their KLIPS code in place of KAMEs. Cheers -- Mike Williams
pgpiVO7vUfrU7.pgp
Description: PGP signature