[Users] OpenSwan help please?

Faris Raouf asterisk at raouf.net
Thu Feb 19 09:55:31 EST 2009


Thanks Vitaliy.

The tun/tap setup bit is the easy part, I think.
It's the rest that I'm not sure of. I can't figure out how/if openswan
interfaces with the tun side of things.

I guess I will experiment and see what happens :-)


Faris.



> -----Original Message-----
> From: Vitaliy Gusev [mailto:vgusev at openvz.org]
> Sent: 19 February 2009 11:56
> To: Faris Raouf
> Cc: users at openvz.org
> Subject: Re: [Users] OpenSwan help please?
> 
> Hi!
> 
> First, try to read http://wiki.openvz.org/VPN_via_the_TUN/TAP_device
> 
> Unfortunately didn't setup OpenSwan, and i don't know that you need to
> do.
> Anyway, try to setup OpenSwan in VE0. If all work fine, then setup in
> VE (like in VE0).
> 
> On 17 February 2009 15:44:02 Faris Raouf wrote:
> > Hi all,
> >
> > I'm after a bit of help please. I need to get OpenSwan up and running
> in a
> > VE and I'm kind of lost.
> >
> > I know that OpenVZ (and Virtuozzo, which I also use) supports
> tun/tap, and
> > from what I have read it would be relatively trivial to set up a VPN
> using
> > OpenVPN using tun. Unfortunately I need to use IKE+(IPSec tunnel|L2TP
> with
> > IPSec policy) because the other endpoint will be a Draytek hardware
> router
> > which only supports certain VPN configurations, which in turn means
> OpenSwan
> > seems to be the main option, and OpenVPN is out of the question.
> >
> > But where to start? I've read various OpenSwan howtos but of course
> they
> > assume you won't be in a VE and there's no mention of tun. I'm
> missing the
> > very basics that would allow me to at least get experimenting. I'm
> also very
> > new to IPSec/VPN stuff in general.
> >
> > On the assumption that tun is actually involved here, my first step
> is
> > obviously to get that enabled on the HN and the VE. But once that is
> > done.....what do I need to do in terms of any special configuration
> of
> > OpenSwan?
> >
> > And if I'm barking up the wrong tree, where should I start?
> >
> > Thanks,
> >
> > Faris.
> >
> >
> >
> > _______________________________________________
> > Users mailing list
> > Users at openvz.org
> > https://openvz.org/mailman/listinfo/users
> >




More information about the Users mailing list