On Thu, Aug 22, 2002 at 03:00:59PM -0400, Sean McAvoy wrote: > Hello, > I've successfully configured site to site VPN connections using > FreeSwan, RSA keys, and using our own Dynamic DNS server (gnudip). It's > a straight forward tunnel connection. Couple of points > left= and right= should be FQDNs, also uniqueids = yes is important, it > drops the old connection if a new one is authenicated and initializing. > And one final one, Dead peer detection should be enabled, if you are > using a patched version of freeswan, as I don't believe the Debian > (woody) package contains that patch (though it does add AES, and x.509 > certificate support).
Were both ends dynamic IP addresses? And freeswan automatically looks up the domain names upon reconnections? Thanks for clarifying Geoff