On Thu, 25 Apr 2002 08:54:02 -0700
"Brock Nanson" <[EMAIL PROTECTED]> wrote:

> If I recall correctly, ipsec.secrets will NOT allow a catch-all entry if
> you are using preshared secrets.  That's the reason you want to go to
> RSA keys if you have a dynamic end to the tunnel - they will allow this,
> if you set a name as Charles suggested.

You can have only one catch-all (and therefore one preshared secret) if you are using 
preshared secrets.  The identifier to use is %any in the ipsec.secrets file.  Like so:

%any 192.168.3.1: PSK "unsecure"

HTH
Chad

_______________________________________________
Leaf-user mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/leaf-user

Reply via email to