Re: Site-to-site IPSec VPN using if_ipsec and racoon

2018-05-17 Thread Andreas Scherrer
till manually creating *additional* ("more specific" and matching with what I have in libreswan) SPD entries on FreeBSD using setkey and now things work. Thank you! andreas On 13 May 2018 at 02:02, Andrey V. Elsukov wrote: > On 13.05.2018 02:37, Andreas Scherrer wrote: >

Site-to-site IPSec VPN using if_ipsec and racoon

2018-05-12 Thread Andreas Scherrer
Hi I am trying to configure a site to site VPN using the (new?) if_ipsec interfaces [1]. One endpoint is FreeBSD 11.1-RELEASE whereas the other will be a RPi (Raspbian 9.4 stretch running libreswan). The public IPs involved are all IPv6 and the goal is to tunnel IPv4 traffic. Currently I am

Re: Same host or different? How can you tell "over the wire"?

2018-03-26 Thread Andreas Scherrer
Hi rfg On 21.03.18 22:19, Ronald F. Guilmette wrote: ... Is there any method which can be applied to A and A' over the Internet and which could reliably differentiate these two possible cases from one another (i.e. a single common host versus two separate hosts)? That is an interesting quest

Re: Multicast/SSDP not working (on VLAN interface)

2018-03-23 Thread Andreas Scherrer
I have created a bug report for this. Thanks again to everyone who spent time on it until now. https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=226884 Best regards andreas ___ freebsd-net@freebsd.org mailing list https://lists.freebsd.org/mailman/li

Re: Multicast/SSDP not working (on VLAN interface)

2018-03-22 Thread Andreas Scherrer
@sunp...@freebsd.org: as you are the (brand new?) maintainer of the miniDLNA port for FreeBSD, my hopes are with you :D tl;dr "setsockopt" should be replaced by "sourcefilter" (at least in minissdp.c's "AddMulticastMembership) On 22.03.18 01:15, Rodney W. Grimes wrote: ... Try as a very fi

Re: Multicast/SSDP not working (on VLAN interface)

2018-03-21 Thread Andreas Scherrer
Thank you for bearing with me. On 21.03.18 01:44, Rodney W. Grimes wrote: ... Show me your full firewall rule set, without that I can only speculate as to where it is getting blocked, but given your symptoms I highly suspect the firewall is blocking the packets OUT of your SERVER back towards

Re: Multicast/SSDP not working (on VLAN interface)

2018-03-20 Thread Andreas Scherrer
Hi Thank you, Rodney and Ivan, for coming back to me (and so quickly). On 20.03.18 00:11, Rodney W. Grimes wrote: ... So I suspect that "something" is dropping the M-SEARCH packets for some reason after they are received. And I cannot get rid of the feeling that it has something to do with th

Multicast/SSDP not working (on VLAN interface)

2018-03-19 Thread Andreas Scherrer
Dear List I was unfortunately unable to find a way to search this mailing list's archive; so please bear with me if the question was answered before. My goal is to have DLNA clients (VLC, Heos music system, ...) in multiple networks discover a MiniDLNA server. The server shows up in VLC whe