login
Login
/
Register
Search
Header Space
Forums
News
Jobs
Blogs
Features
Man Pages
Site
Home
»
Mailing list archives
»
openbsd-misc
»
2007
»
August
»
17
Re: ipsec vpn?
view
thread
Score:
Previous message: [
thread
] [
date
] [
author
]
Next message: [thread] [
date
] [
author
]
[view in full thread]
From:
Hans-Joerg Hoexer <Hans-Joerg.Hoexer@...>
To: Steve B <steveb7@...>
Cc: Hans-Joerg Hoexer <Hans-Joerg.Hoexer@...>, Sergey Prysiazhnyi <apelsin@...>, <misc@...>
Subject:
Re: ipsec vpn?
Date: Friday, August 17, 2007 - 2:40 am
On Thu, Aug 16, 2007 at 06:43:34PM -0700, Steve B wrote:
quoted text
> I made a few changes and did some more testing this evening. > > 1. I changed the /etc/ipsec.conf to bring it in line with the Greenbow > default transforms that Hans-Joerg recommened. > > # cat /etc/ipsec.conf > ike dynamic esp tunnel from any to 192.168.1.0/24 \ > main auth hmac-sha1 enc 3des group modp1024 \ > quick auth hmac-sha1 enc 3des \ > psk abc123 > > 2. I created the basic polciy file: > > # cat /etc/isakmpd/isakmpd.policy > KeyNote-Version: 2 > Authorizer: "POLICY" > > 3. Being lazy I rebooted the server and tried starting isakmpd manually > without the "-K". It would not start. When I tried starting it with "-dLv" I > got the message: > > 180252.969043 Default check_file_secrecy_fd: not loading > /etc/isakmpd/isakmpd.policy - too open permissions > 180252.970281 Default policy_init: cannot read /etc/isakmpd/isakmpd.policy: > Operation not permitted > > So I went back and started it with "-K".
please go back to step 2, however this time set the permissions of /etc/isakmpd/isakmpd.policy to 600.
quoted text
> 4. I then turned on packet tracing as Stuart suggested, tried logging in, > turned packet tracing off and ran tcpdump on the file: > > # echo "p on" > /var/run/isakmpd.fifo > > # echo "p off" > /var/run/isakmpd.fifo > > # tcpdump -r /var/run/isakmpd.pcap -vvn > tcpdump: WARNING: snaplen raised from 96 to 65536 > 18:08:57.938430 64.119.40.170.500 > 64.119.37.74.500: [udp sum ok] isakmp > v1.0 exchange ID_PROT > cookie: ed67c89ed96545fb->0000000000000000 msgid: 00000000 len: 160 > payload: SA len: 52 DOI: 1(IPSEC) situation: IDENTITY_ONLY > payload: PROPOSAL len: 40 proposal: 1 proto: ISAKMP spisz: 0 > xforms: 1 > payload: TRANSFORM len: 32 > transform: 0 ID: ISAKMP > attribute ENCRYPTION_ALGORITHM = 3DES_CBC > attribute HASH_ALGORITHM = SHA > attribute AUTHENTICATION_METHOD = PRE_SHARED > attribute GROUP_DESCRIPTION = MODP_1024 > attribute LIFE_TYPE = SECONDS > attribute LIFE_DURATION = 3600 > payload: VENDOR len: 20 (supports v1 NAT-T, > draft-ietf-ipsec-nat-t-ike-00) > payload: VENDOR len: 20 (supports v2 NAT-T, > draft-ietf-ipsec-nat-t-ike-02) > payload: VENDOR len: 20 (supports v3 NAT-T, > draft-ietf-ipsec-nat-t-ike-03) > payload: VENDOR len: 20 (supports DPD v1.0) [ttl 0] (id 1, len 188) > 18:08:57.944015 64.119.37.74.500 > 64.119.40.170.500: [udp sum ok] isakmp > v1.0 exchange INFO > cookie: cfef30980a709fe2->0000000000000000 msgid: 00000000 len: 40 > payload: NOTIFICATION len: 12 > notification: NO PROPOSAL CHOSEN [ttl 0] (id 1, len 68) > > 5. OK, no good. Nothing jumped out at me in the tcpdump so I changed from > dynamic to passive, and tried again: > > # cat /etc/ipsec.conf > ike passive esp tunnel from any to 192.168.1.0/24 \ > main auth hmac-sha1 enc 3des group modp1024 \ > quick auth hmac-sha1 enc 3des \ > psk abc123 > > # ipsecctl -f /etc/ipsec.conf > > killed the isakmpd daemon and restarted it with -K", turned packet tracing > back on and tried everything again. Got more detail but nothing jumps out at > me. > > # tcpdump -r /var/run/isakmpd.pcap -vvn > tcpdump: WARNING: snaplen raised from 96 to 65536 > 18:08:57.938430 64.119.40.170.500 > 64.119.37.74.500: [udp sum ok] isakmp > v1.0 exchange ID_PROT > cookie: ed67c89ed96545fb->0000000000000000 msgid: 00000000 len: 160 > payload: SA len: 52 DOI: 1(IPSEC) situation: IDENTITY_ONLY > payload: PROPOSAL len: 40 proposal: 1 proto: ISAKMP spisz: 0 > xforms: 1 > payload: TRANSFORM len: 32 > transform: 0 ID: ISAKMP > attribute ENCRYPTION_ALGORITHM = 3DES_CBC > attribute HASH_ALGORITHM = SHA > attribute AUTHENTICATION_METHOD = PRE_SHARED > attribute GROUP_DESCRIPTION = MODP_1024 > attribute LIFE_TYPE = SECONDS > attribute LIFE_DURATION = 3600 > payload: VENDOR len: 20 (supports v1 NAT-T, > draft-ietf-ipsec-nat-t-ike-00) > payload: VENDOR len: 20 (supports v2 NAT-T, > draft-ietf-ipsec-nat-t-ike-02) > payload: VENDOR len: 20 (supports v3 NAT-T, > draft-ietf-ipsec-nat-t-ike-03) > payload: VENDOR len: 20 (supports DPD v1.0) [ttl 0] (id 1, len 188) > 18:08:57.944015 64.119.37.74.500 > 64.119.40.170.500: [udp sum ok] isakmp > v1.0 exchange INFO > cookie: cfef30980a709fe2->0000000000000000 msgid: 00000000 len: 40 > payload: NOTIFICATION len: 12 > notification: NO PROPOSAL CHOSEN [ttl 0] (id 1, len 68) > 18:24:12.441476 64.119.40.170.500 > 64.119.37.74.500: [udp sum ok] isakmp > v1.0 exchange ID_PROT > cookie: 7c923ecb8d9a90f0->0000000000000000 msgid: 00000000 len: 160 > payload: SA len: 52 DOI: 1(IPSEC) situation: IDENTITY_ONLY > payload: PROPOSAL len: 40 proposal: 1 proto: ISAKMP spisz: 0 > xforms: 1 > payload: TRANSFORM len: 32 > transform: 0 ID: ISAKMP > attribute ENCRYPTION_ALGORITHM = 3DES_CBC > attribute HASH_ALGORITHM = SHA > attribute AUTHENTICATION_METHOD = PRE_SHARED > attribute GROUP_DESCRIPTION = MODP_1024 > attribute LIFE_TYPE = SECONDS > attribute LIFE_DURATION = 3600 > payload: VENDOR len: 20 (supports v1 NAT-T, > draft-ietf-ipsec-nat-t-ike-00) > payload: VENDOR len: 20 (supports v2 NAT-T, > draft-ietf-ipsec-nat-t-ike-02) > payload: VENDOR len: 20 (supports v3 NAT-T, > draft-ietf-ipsec-nat-t-ike-03) > payload: VENDOR len: 20 (supports DPD v1.0) [ttl 0] (id 1, len 188) > 18:24:12.442839 64.119.37.74.500 > 64.119.40.170.500: [udp sum ok] isakmp > v1.0 exchange INFO > cookie: 1c466525c4ed2062->0000000000000000 msgid: 00000000 len: 40 > payload: NOTIFICATION len: 12 > notification: NO PROPOSAL CHOSEN [ttl 0] (id 1, len 68) > > 6. Went back to my initial /etc/ipsec.conf that seemed to complete the Phase > 1 transform, but hung on Phase 2 and tried everything all over again > > # cat /etc/ipsec.conf > ike dynamic esp tunnel from any to 192.168.1.0/24 \ > main auth hmac-sha1 enc 3des group modp1024 \ > quick auth hmac-sha2-256 enc 3des \ > psk abc123 > > # echo "p on" > /var/run/isakmpd.fifo > > # echo "p off" > /var/run/isakmpd.fifo > > # tcpdump -r /var/run/isakmpd.pcap -vvn > tcpdump: WARNING: snaplen raised from 96 to 65536 > 18:32:48.599289 64.119.40.170.500 > 64.119.37.74.500: [udp sum ok] isakmp > v1.0 exchange ID _PROT > cookie: 006a1301618e50c2->0000000000000000 msgid: 00000000 len: 160 > payload: SA len: 52 DOI: 1(IPSEC) situation: IDENTITY_ONLY > payload: PROPOSAL len: 40 proposal: 1 proto: ISAKMP spisz: 0 > xforms: 1 > payload: TRANSFORM len: 32 > transform: 0 ID: ISAKMP > attribute ENCRYPTION_ALGORITHM = 3DES_CBC > attribute HASH_ALGORITHM = SHA > attribute AUTHENTICATION_METHOD = PRE_SHARED > attribute GROUP_DESCRIPTION = MODP_1024 > attribute LIFE_TYPE = SECONDS > attribute LIFE_DURATION = 3600 > payload: VENDOR len: 20 (supports v1 NAT-T, > draft-ietf-ipsec-nat-t-ike-00) > payload: VENDOR len: 20 (supports v2 NAT-T, > draft-ietf-ipsec-nat-t-ike-02) > payload: VENDOR len: 20 (supports v3 NAT-T, > draft-ietf-ipsec-nat-t-ike-03) > payload: VENDOR len: 20 (supports DPD v1.0) [ttl 0] (id 1, len 188) > 18:32:48.605289 64.119.37.74.500 > 64.119.40.170.500: [udp sum ok] isakmp > v1.0 exchange ID _PROT > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: 00000000 len: 180 > payload: SA len: 52 DOI: 1(IPSEC) situation: IDENTITY_ONLY > payload: PROPOSAL len: 40 proposal: 1 proto: ISAKMP spisz: 0 > xforms: 1 > payload: TRANSFORM len: 32 > transform: 0 ID: ISAKMP > attribute ENCRYPTION_ALGORITHM = 3DES_CBC > attribute HASH_ALGORITHM = SHA > attribute AUTHENTICATION_METHOD = PRE_SHARED > attribute GROUP_DESCRIPTION = MODP_1024 > attribute LIFE_TYPE = SECONDS > attribute LIFE_DURATION = 3600 > payload: VENDOR len: 20 (supports OpenBSD-4.0) > payload: VENDOR len: 20 (supports v2 NAT-T, > draft-ietf-ipsec-nat-t-ike-02) > payload: VENDOR len: 20 (supports v3 NAT-T, > draft-ietf-ipsec-nat-t-ike-03) > payload: VENDOR len: 20 (supports NAT-T, RFC 3947) > payload: VENDOR len: 20 (supports DPD v1.0) [ttl 0] (id 1, len 208) > 18:32:49.089864 64.119.40.170.500 > 64.119.37.74.500: [udp sum ok] isakmp > v1.0 exchange ID _PROT > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: 00000000 len: 228 > payload: KEY_EXCH len: 132 > payload: NONCE len: 20 > payload: NAT-D-DRAFT len: 24 > payload: NAT-D-DRAFT len: 24 [ttl 0] (id 1, len 256) > 18:32:49.143210 64.119.37.74.4500 > 64.119.40.170.4500: [udp sum ok] > udpencap: isakmp v1.0 exchange > ID_PROT > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: 00000000 len: 228 > payload: KEY_EXCH len: 132 > payload: NONCE len: 20 > payload: NAT-D-DRAFT len: 24 > payload: NAT-D-DRAFT len: 24 [ttl 0] (id 1, len 260) > 18:32:49.300718 64.119.40.170.4500 > 64.119.37.74.4500: [bad udp cksum > 729f!] udpencap: is akmp v1.0 exchange > ID_PROT > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: 00000000 len: 92 > payload: ID len: 12 type: IPV4_ADDR = 192.168.11.200 > payload: HASH len: 24 > payload: NOTIFICATION len: 28 > notification: INITIAL CONTACT > (006a1301618e50c2->72ac6fa4514a7a00) [ttl 0] > (id 1, len 124) > 18:32:49.302016 64.119.37.74.4500 > 64.119.40.170.4500: [bad udp cksum > 2cab!] udpencap: is akmp v1.0 exchange > ID_PROT > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: 00000000 len: 104 > payload: ID len: 24 type: FQDN = "gateway.home.lan" > payload: HASH len: 24 > payload: NOTIFICATION len: 28 > notification: INITIAL CONTACT > (006a1301618e50c2->72ac6fa4514a7a00) [ttl 0] > (id 1, len 136) > 18:32:49.373070 64.119.40.170.4500 > 64.119.37.74.500: [bad udp cksum e6c7!] > udpencap: isa kmp v1.0 exchange > QUICK_MODE > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: acc5e032 len: 148 > payload: HASH len: 24 > payload: SA len: 48 DOI: 1(IPSEC) situation: IDENTITY_ONLY > payload: PROPOSAL len: 36 proposal: 1 proto: IPSEC_ESP spisz: 4 > xforms: 1 SPI: 0xfc34a42d > payload: TRANSFORM len: 24 > transform: 1 ID: 3DES > attribute LIFE_TYPE = SECONDS > attribute LIFE_DURATION = 3600 > attribute ENCAPSULATION_MODE = 61443 (unknown) > attribute AUTHENTICATION_ALGORITHM = HMAC_SHA > payload: NONCE len: 20 > payload: ID len: 12 type: IPV4_ADDR = 192.168.11.200 > payload: ID len: 16 type: IPV4_ADDR_SUBNET = > 192.168.1.0/255.255.255.0 [ttl 0] (id > 1, len 180) > 18:32:49.374171 64.119.37.74.4500 > 64.119.40.170.4500: [bad udp cksum > 2400!] udpencap: is akmp v1.0 exchange > INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: 231354db len: 64 > payload: HASH len: 24 > payload: NOTIFICATION len: 12 > notification: NO PROPOSAL CHOSEN [ttl 0] (id 1, len 96) > 18:32:51.141486 64.119.37.74.4500 > 64.119.40.170.4500: [udp sum ok] > udpencap: isakmp v1.0 exchange > QUICK_MODE > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: 73463ff9 len: 288 > payload: HASH len: 24 > payload: SA len: 52 DOI: 1(IPSEC) situation: IDENTITY_ONLY > payload: PROPOSAL len: 40 proposal: 1 proto: IPSEC_ESP spisz: 4 > xforms: 1 SPI: 0x893a7df9 > payload: TRANSFORM len: 28 > transform: 1 ID: 3DES > attribute LIFE_TYPE = SECONDS > attribute LIFE_DURATION = 1200 > attribute ENCAPSULATION_MODE = TUNNEL > attribute AUTHENTICATION_ALGORITHM = HMAC_SHA2_256 > attribute GROUP_DESCRIPTION = 2 > payload: NONCE len: 20 > payload: KEY_EXCH len: 132 > payload: ID len: 16 type: IPV4_ADDR_SUBNET = 0.0.0.0/0.0.0.0 > payload: ID len: 16 type: IPV4_ADDR_SUBNET = > 192.168.1.0/255.255.255.0 [ttl 0] (id > 1, len 320) > 18:32:54.322013 64.119.37.74.4500 > 64.119.40.170.4500: [bad udp cksum 280!] > udpencap: isa kmp v1.0 exchange INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: 0f474bcf len: 84 > payload: HASH len: 24 > payload: NOTIFICATION len: 32 > notification: STATUS_DPD_R_U_THERE seq 28733 [ttl 0] (id 1, len > 116) > 18:32:54.375588 64.119.40.170.4500 > 64.119.37.74.500: [bad udp cksum 280!] > udpencap: isak mp v1.0 exchange INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: 74a59589 len: 84 > payload: HASH len: 24 > payload: NOTIFICATION len: 32 > notification: STATUS_DPD_R_U_THERE_ACK seq 28733 [ttl 0] (id 1, > len 116) > 18:32:55.377184 64.119.40.170.4500 > 64.119.37.74.4500: [bad udp cksum > e947!] udpencap: is akmp v1.0 exchange > QUICK_MODE > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: acc5e032 len: 148 > payload: HASH len: 24 > payload: SA len: 48 DOI: 1(IPSEC) situation: IDENTITY_ONLY > payload: PROPOSAL len: 36 proposal: 1 proto: IPSEC_ESP spisz: 4 > xforms: 1 SPI: 0xfc34a42d > payload: TRANSFORM len: 24 > transform: 1 ID: 3DES > attribute LIFE_TYPE = SECONDS > attribute LIFE_DURATION = 3600 > attribute ENCAPSULATION_MODE = 61443 (unknown) > attribute AUTHENTICATION_ALGORITHM = HMAC_SHA > payload: NONCE len: 20 > payload: ID len: 12 type: IPV4_ADDR = 192.168.11.200 > payload: ID len: 16 type: IPV4_ADDR_SUBNET = > 192.168.1.0/255.255.255.0 [ttl 0] (id > 1, len 180) > 18:32:55.378120 64.119.37.74.4500 > 64.119.40.170.4500: [bad udp cksum > 2400!] udpencap: is akmp v1.0 exchange > INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: aa6eb0be len: 64 > payload: HASH len: 24 > payload: NOTIFICATION len: 12 > notification: NO PROPOSAL CHOSEN [ttl 0] (id 1, len 96) > 18:32:59.391983 64.119.37.74.4500 > 64.119.40.170.4500: [bad udp cksum 280!] > udpencap: isa kmp v1.0 exchange INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: bad5ee9a len: 84 > payload: HASH len: 24 > payload: NOTIFICATION len: 32 > notification: STATUS_DPD_R_U_THERE seq 28734 [ttl 0] (id 1, len > 116) > 18:32:59.456695 64.119.40.170.4500 > 64.119.37.74.500: [bad udp cksum 280!] > udpencap: isak mp v1.0 exchange INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: f27b7e00 len: 84 > payload: HASH len: 24 > payload: NOTIFICATION len: 32 > notification: STATUS_DPD_R_U_THERE_ACK seq 28734 [ttl 0] (id 1, > len 116) > 18:33:04.462001 64.119.37.74.4500 > 64.119.40.170.4500: [bad udp cksum 280!] > udpencap: isa kmp v1.0 exchange INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: dc50c200 len: 84 > payload: HASH len: 24 > payload: NOTIFICATION len: 32 > notification: STATUS_DPD_R_U_THERE seq 28735 [ttl 0] (id 1, len > 116) > 18:33:04.515614 64.119.40.170.4500 > 64.119.37.74.500: [bad udp cksum 280!] > udpencap: isak mp v1.0 exchange INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: a1a604bd len: 84 > payload: HASH len: 24 > payload: NOTIFICATION len: 32 > notification: STATUS_DPD_R_U_THERE_ACK seq 28735 [ttl 0] (id 1, > len 116) > 18:33:09.532010 64.119.37.74.4500 > 64.119.40.170.4500: [bad udp cksum 280!] > udpencap: isa kmp v1.0 exchange INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: eb853807 len: 84 > payload: HASH len: 24 > payload: NOTIFICATION len: 32 > notification: STATUS_DPD_R_U_THERE seq 28736 [ttl 0] (id 1, len > 116) > 18:33:09.584642 64.119.40.170.4500 > 64.119.37.74.500: [bad udp cksum 280!] > udpencap: isak mp v1.0 exchange INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: 3b39de48 len: 84 > payload: HASH len: 24 > payload: NOTIFICATION len: 32 > notification: STATUS_DPD_R_U_THERE_ACK seq 28736 [ttl 0] (id 1, > len 116) > 18:33:14.592010 64.119.37.74.4500 > 64.119.40.170.4500: [bad udp cksum 280!] > udpencap: isa kmp v1.0 exchange INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: d8469136 len: 84 > payload: HASH len: 24 > payload: NOTIFICATION len: 32 > notification: STATUS_DPD_R_U_THERE seq 28737 [ttl 0] (id 1, len > 116) > 18:33:14.645623 64.119.40.170.4500 > 64.119.37.74.500: [bad udp cksum 280!] > udpencap: isak mp v1.0 exchange INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: 46548fd7 len: 84 > payload: HASH len: 24 > payload: NOTIFICATION len: 32 > notification: STATUS_DPD_R_U_THERE_ACK seq 28737 [ttl 0] (id 1, > len 116) > 18:33:19.661985 64.119.37.74.4500 > 64.119.40.170.4500: [bad udp cksum 280!] > udpencap: isa kmp v1.0 exchange INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: a5453e27 len: 84 > payload: HASH len: 24 > payload: NOTIFICATION len: 32 > notification: STATUS_DPD_R_U_THERE seq 28738 [ttl 0] (id 1, len > 116) > 18:33:19.714866 64.119.40.170.4500 > 64.119.37.74.500: [bad udp cksum 280!] > udpencap: isak mp v1.0 exchange INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: b0ce6ed1 len: 84 > payload: HASH len: 24 > payload: NOTIFICATION len: 32 > notification: STATUS_DPD_R_U_THERE_ACK seq 28738 [ttl 0] (id 1, > len 116) > 18:33:24.732016 64.119.37.74.4500 > 64.119.40.170.4500: [bad udp cksum 280!] > udpencap: isa kmp v1.0 exchange INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: 88a5d405 len: 84 > payload: HASH len: 24 > payload: NOTIFICATION len: 32 > notification: STATUS_DPD_R_U_THERE seq 28739 [ttl 0] (id 1, len > 116) > 18:33:24.787445 64.119.40.170.4500 > 64.119.37.74.500: [bad udp cksum 280!] > udpencap: isak mp v1.0 exchange INFO > cookie: 006a1301618e50c2->72ac6fa4514a7a00 msgid: b6391410 len: 84 > payload: HASH len: 24 > payload: NOTIFICATION len: 32 > notification: STATUS_DPD_R_U_THERE_ACK seq 28739 [ttl 0] (id 1, > len 116)
Previous message: [
thread
] [
date
] [
author
]
Next message: [thread] [
date
] [
author
]
Messages in current thread:
ipsec vpn?
, Sergey Prysiazhnyi
, (Sun Aug 12, 6:30 pm)
Re: ipsec vpn?
, Hans-Joerg Hoexer
, (Wed Aug 15, 4:37 pm)
Re: ipsec vpn?
, Sergey Prysiazhnyi
, (Wed Aug 15, 7:53 pm)
Re: ipsec vpn?
, Hans-Joerg Hoexer
, (Thu Aug 16, 3:56 am)
Re: ipsec vpn?
, Sergey Prysiazhnyi
, (Wed Aug 22, 6:56 pm)
Re: ipsec vpn?
, Steve B
, (Thu Aug 16, 9:43 pm)
Re: ipsec vpn?
, Markus Friedl
, (Fri Aug 17, 2:53 am)
Re: ipsec vpn?
, Steve B
, (Sat Aug 18, 4:44 pm)
Re: ipsec vpn?
, Steve B
, (Tue Aug 21, 12:07 am)
Re: ipsec vpn?
, Steve B
, (Sat Aug 18, 4:32 pm)
Re: ipsec vpn?
, Hans-Joerg Hoexer
, (Fri Aug 17, 2:40 am)
Re: ipsec vpn?
, Hans Hoexer
, (Wed Aug 15, 5:13 pm)
Re: ipsec vpn?
, Steve B
, (Tue Aug 14, 12:00 am)
Re: ipsec vpn?
, Stuart Henderson
, (Tue Aug 14, 3:49 am)
Navigation
Create content
Mailing list archives
Recent posts
Mail archive search
Enter your search terms.
all mailing lists
alsa-devel
dragonflybsd-bugs
dragonflybsd-commit
dragonflybsd-docs
dragonflybsd-kernel
dragonflybsd-submit
dragonflybsd-user
freebsd-announce
freebsd-bugs
freebsd-chat
freebsd-cluster
freebsd-current
freebsd-drivers
freebsd-embeded
freebsd-fs
freebsd-hackers
freebsd-hardware
freebsd-mobile
freebsd-net
freebsd-performance
freebsd-pf
freebsd-security
freebsd-security-notifications
freebsd-threads
git
git-commits-head
linux-activists
linux-arm
linux-ath5k-devel
linux-btrfs
linux-c-programming
linux-driver-devel
linux-ext4
linux-fsdevel
linux-ia64
linux-input
linux-kernel
linux-kernel-janitors
linux-kernel-mentors
linux-kernel-newbies
linux-kvm
linux-net
linux-netdev
linux-newbie
linux-nfs
linux-raid
linux-scsi
linux-security-module
linux-sparse
linux-usb
linux-usb-devel
madwifi-devel
netbsd-announce
netbsd-tech-kern
openbsd-announce
openbsd-bugs
openbsd-ipv6
openbsd-misc
openbsd-security-announce
openbsd-smp
openbsd-source-changes
openbsd-tech
openfabrics-general
openmoko-community
openmoko-devel
openmoko-kernel
reiserfs-devel
tux3
ucarp
Optionally limit your search to a specific mailing list.
advanced
Popular discussions
linux-kernel
:
Ingo Molnar
Re: [Announce] [patch] Modular Scheduler Core and Completely Fair Scheduler [CFS]
Jeff Garzik
Re: 2.6.20-rc6-mm3
Rafael J. Wysocki
[Bug 10629] 2.6.26-rc1-$sha1: RIP __d_lookup+0x8c/0x160
Greg Kroah-Hartman
[PATCH 001/196] Chinese: Add the known_regression URI to the HOWTO
git
:
Martin Waitz
comparing file contents in is_exact_match?
Jakub Narebski
Re: VCS comparison table
Linus Torvalds
Re: [kernel.org users] [RFD] On deprecating "git-foo" for builtins
Jakub Narebski
Re: [PATCH] Port to 12 other Platforms.
openbsd-misc
:
Richard Stallman
Real men don't attack straw men
GVG GVG
ssh_exchange_identification: Connection closed by remote host
Renaud Allard
very weak bridge performance
Alex Thurlow
Router performance on OpenBSD and OpenBGPD
linux-netdev
:
Eric Dumazet
[PATCH] IPV4 : Move ip route cache flush (secret_rebuild) from softirq to workqueue
Jarek Poplawski
[PATCH take2][NET] ifb: set separate lockdep classes for queue locks
KOSAKI Motohiro
[bug?] tg3: Failed to load firmware "tigon/tg3_tso.bin"
Octavian Purdila
race in skb_splice_bits?
Latest forum posts
high memory
1 day ago
Linux kernel
semaphore access speed
1 day ago
Applications and Utilities
the kernel how to power off the machine
1 day ago
Linux kernel
Easter Eggs in windows XP
1 day ago
Windows
Shared swap partition
1 day ago
Linux general
Root password
1 day ago
Linux general
Where/when DNOTIFY is used?
1 day ago
Linux kernel
How to convert Linux Kernel built-in module into a loadable module
1 day ago
Linux kernel
Linux 2.6.24 and I/O schedulers
1 day ago
Linux kernel
USB Driver -- Interrupt Polling -- A Little Help Please
1 day ago
Linux general
Show all forums...
Recent Tags
2.6.27-rc8
Intel
bugs
Linux
Linus Torvalds
quote
-rc8
-rc
2.6.27
more tags
Colocation donated by:
Who's online
There are currently
4 users
and
1086 guests
online.
Online users
zdzichu
strcmp
Mr_Z
kingneutron
Syndicate
speck-geostationary