>>>>> "Jason" == Jason Dixon <[EMAIL PROTECTED]> writes:
Jason> Everything you need is in the base install. With the recent changes to Jason> ipsecctl and ipsec.conf, there's no need to consider OpenVPN (except perhaps Jason> on technical merits, which I believe it loses on). Maybe not on "getting it set up", but there are definitely some problems with ipsec that make OpenVPN a winner for some circumstances, such as NAT traversal and hostile-to-v6 routers and ISPs. Unless something has happened with ipsec/ipv6 in general recently that I'm not aware of. If so, please share. -- Randal L. Schwartz - Stonehenge Consulting Services, Inc. - +1 503 777 0095 <merlyn@stonehenge.com> <URL:http://www.stonehenge.com/merlyn/> Perl/Unix/security consulting, Technical writing, Comedy, etc. etc. See PerlTraining.Stonehenge.com for onsite and open-enrollment Perl training!