Re: [leaf-user] IPSEC/shorewall with 2 dynamic IP's

2003-09-30 Thread Tom Eastep
On Tue, 2003-09-30 at 10:40, Erich Titl wrote: > Hi > > Has anyone successfully set up an IPSec tunnel with 2 dynamic endpoints. > Would you mind to share the shorewall and up/down scripts. > I seem to have a problem setting it up because > > 1) shorewall needs to be up to get the IP address of

Re: [leaf-user] IPSEC/shorewall with 2 dynamic IP's

2003-09-30 Thread K.-P. Kirchdörfer
Erich; pls search mailinglist - I described a solution for ipsec between two dynamic leaf routers 12/2002 or 1/2003. It seems to work, anyway comments and improvements are welcome kp Am Dienstag, 30. September 2003 19:40 schrieb Erich Titl: > Hi > > Has anyone successfully set up an IPSec tunne

RE: [leaf-user] IPSEC/shorewall with 2 dynamic IP's

2003-09-30 Thread S Mohan
Would dns lookup work with shorewall and ipsec.conf declaration? If so, can we not use Dynamic DNS providers to set this up? Regards Mohan -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Erich Titl Sent: Tuesday, September 30, 2003 11:10 PM To: [EMAIL PROTEC

Re: [leaf-user] IPSEC/shorewall with 2 dynamic IP's

2003-10-01 Thread Erich Titl
kp Thanks, I have a copy of your message. The thing I'd like to improve is the recovery mechanism. I somehow hate having to run a cron job to check if a connection was broken due to IP change. I believe there must be a way for IpSec to detect that the other endpoint is not reachable and to rest