On a slightly side note, I'd much prefer to see FreeBSD with IPSEC pseudo-interfaces a la OpenBSD/linux.
I'd much prefer to work with say, enc0, or ipsec1, than mess around with guf half-tunnels.... makes complex routing much easier.... Just a thought - perhaps a netgraph ipsec node is the way forward? Tariq intY (www.inty.com) has automatically scanned this email using Sophos Anti-Virus To Unsubscribe: send mail to [EMAIL PROTECTED] with "unsubscribe freebsd-net" in the body of the message