[Leaf-user] ping check not working

2001-12-29 Thread Robert Williams
Hi all, I am using Dachstien 1.0.2 cd and I am having trouble with the ping check function. If I run multicron-p from the command line the ping check works and since the address is bogus (for testing) it sends me an email. # List of hosts to ping check. ADMIN will be sent mail if any fail. l

Re: [Leaf-user] ipsec gateways & same private networks ???

2001-12-29 Thread Simon Bolduc
I ran into this problem - it was a pretty easy change - I changed my subnet to 192.168.2.0/24 and altered all programs that specify a listen on IP as 192.168.1.254 and everything was good. Now I have a VPN between two dachstein routers (yaay). This is actually one of the very cool things ab

Re: [Leaf-user] ipsec gateways & same private networks ???

2001-12-29 Thread Jeff Newmiller
On Sat, 29 Dec 2001, Michael D. Schleif wrote: > > This must be a common problem ;> > > Suppose that there are two (2) Dachstein-CD firewalls masquerading two > (2) distinct internal networks that happen to use the same private > subnets (e.g., 192.168.1.0/24). > >

Fwd: Re: [Leaf-user] Dachstein-CD, ipsec & rsasigkey ???

2001-12-29 Thread guitarlynn
-- Forwarded Message -- Subject: Re: [Leaf-user] Dachstein-CD, ipsec & rsasigkey ??? Date: Sun, 2 Dec 2001 10:56:43 -0600 From: guitarlynn <[EMAIL PROTECTED]> To: [EMAIL PROTECTED] On Sat, 29 Dec 2001, you wrote: > Is there some special source for randomness other than /dev/r

[Leaf-user] Re: [Leaf-user] Dachstein-CD, ipsec & rsasigkey ???

2001-12-29 Thread Stephen Lee
Try pounding on your keyboard for a bit to generate some "randomness". This only works locally though. If you have to generate a key for a remote box then do it locally and then copy the contents to the remote box. Stephen > > Why does this *never* complete? > > ipsec rsasigkey --verbose 2

[Leaf-user] Dachstein-CD, ipsec & rsasigkey ???

2001-12-29 Thread Michael D. Schleif
Why does this *never* complete? ipsec rsasigkey --verbose 2048 >mykey Is there some special source for randomness other than /dev/random? I've tried this with various lengths, including the shortest allowable: 16 It appears to hang on two (2) different machines: 486/66

[Leaf-user] ipsec gateways & same private networks ???

2001-12-29 Thread Michael D. Schleif
This must be a common problem ;> Suppose that there are two (2) Dachstein-CD firewalls masquerading two (2) distinct internal networks that happen to use the same private subnets (e.g., 192.168.1.0/24). is pretty emphatic: ``No

Re: [Leaf-user] portfw to *multiple* hosts ???

2001-12-29 Thread Jeff Newmiller
On Sat, 29 Dec 2001, Scott C. Best wrote: > Paul: > > Heya. Notso left field, really. I've used ipfwd to > forward IPSec packets (protocol 50 and 51) to my NAT'd LAN's > broadcast address...and IPSec clients on that LAN can handle > it. > Of course...IPSec has some sense of "state" o

[Leaf-user] Re: Thanks for LRP Configs

2001-12-29 Thread Richard G. Minutillo
Pete, Sorry I've taken a while to answer, but I was away for the holiday. First, just to clarify, my kernel and modules are not really Dachstein; indeed, kernels are pretty much distribution independent, and I'm running 2.2.19 on a fairly heavily modified EigersteinBETA base, but I'm goad to hea