Dear List,
I have now succeeded in installing an OpenVPNZ on my WRAP LEAF Box. Everything works very well. This sort of surprised me, I am used to working with professional IKE/IPSEC VPNs and OpenVPN seems at least as good. For information, one small problem remains that is LEAF orientated: The boot-up process starts OpenVPN too soon, ntpsimpl needs to be started first. This acn be fixed but ntpsimpl, although modified with a script from Erich Titl does not actually set the system date for quite some time after it has fetched the time from the Internet. For OpenVPN this causes the startup process to reject all local Certificates as being invalid (this is true - when a Certificate's date lies in the apparent future, the Certificate is indeed not valid). This is not corrected by waiting. A new reboot is required. (To reiterate, the problem is caused by the ISP rejecting logon attempts for a period shortly after a disconnect - for example a 10 second power failure would cause the system to fail and stay failed). I will think about this and experiment with solutions. Any suggestions are, of course, very welcome.
Bob


-------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc. Do you grep through log files
for problems?  Stop!  Download the new AJAX search engine that makes
searching your log files as easy as surfing the  web.  DOWNLOAD SPLUNK!
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=103432&bid=230486&dat=121642
------------------------------------------------------------------------
leaf-user mailing list: [email protected]
https://lists.sourceforge.net/lists/listinfo/leaf-user
Support Request -- http://leaf-project.org/

Reply via email to