Re: IPsec on a LAN?

2015-05-06 Thread Mason Loring Bliss
On Wed, May 06, 2015 at 01:28:59AM -0500, Jim Thompson wrote: > What you’re looking for is “transport mode” IPsec. Thank you. Yes. The stuff you found for me looks exactly right. :) -- Mason Loring Bliss ma...@blisses.orghttp://blisses.org/ "I am a brother of jackals, and a c

Re: FreeBSD makes linux think other subet is in same lan.

2015-05-06 Thread Martin Larsson
yes, without adding the route, ping -S 192.168.1.1 10.11.12.13 works. On Wed, May 6, 2015 at 9:51 PM, Ermal Luçi wrote: > > > On Wed, May 6, 2015 at 2:51 PM, Martin Larsson > wrote: > >> This is a small summary of >> >> https://forums.freebsd.org/threads/routing-issue-with-ipsec-windows-works-

Re: FreeBSD makes linux think other subet is in same lan.

2015-05-06 Thread Ermal Luçi
On Wed, May 6, 2015 at 2:51 PM, Martin Larsson wrote: > This is a small summary of > > https://forums.freebsd.org/threads/routing-issue-with-ipsec-windows-works-linux-doesnt.51201/ > . > > > Setup: > My side > 192.168.1.0/24 > Freebsd (default gateway and ipsec gateway, 192.168.1.1) > windows, li

Re: FreeBSD makes linux think other subet is in same lan.

2015-05-06 Thread Martin Larsson
Yes. root@fjuttsi:~ # setkey -D 85.230.59.213 194.41.121.12 esp mode=tunnel spi=1120293717(0x42c65355) reqid=1(0x0001) E: rijndael-cbc 41c6cbe5 4de2a11f e6e57092 58251b2c b51272ba 90f5a84a b9a121db eaf79bb0 A: hmac-sha2-256 5ca5b365 4ca57b11 239d2487 6def4b97 e6bf294

Re: FreeBSD makes linux think other subet is in same lan.

2015-05-06 Thread Andrey V. Elsukov
On 06.05.2015 15:51, Martin Larsson wrote: > This is a small summary of > https://forums.freebsd.org/threads/routing-issue-with-ipsec-windows-works-linux-doesnt.51201/ Can you provide run-time configuration from your FreeBSD gateway? # setkey -D # setkey -DP # netstat -rnf inet -- WBR, Andrey V

Re: Frequent hickups on the networking layer

2015-05-06 Thread Mark Schouten
Hi, On 04/29/2015 04:06 PM, Garrett Wollman wrote: If you're using one of the drivers that has this problem, then yes, keeping your layer-2 MTU/MRU below 4096 will probably cause it to use 4k (page-sized) clusters instead, which are perfectly safe. As a side note, at least on the hardware I ha

[Bug 199933] re0 fails on boot, but works after manual intervention

2015-05-06 Thread bugzilla-noreply
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=199933 Mark Linimon changed: What|Removed |Added Assignee|freebsd-b...@freebsd.org|freebsd-net@FreeBSD.org -- You are

FreeBSD makes linux think other subet is in same lan.

2015-05-06 Thread Martin Larsson
This is a small summary of https://forums.freebsd.org/threads/routing-issue-with-ipsec-windows-works-linux-doesnt.51201/ . Setup: My side 192.168.1.0/24 Freebsd (default gateway and ipsec gateway, 192.168.1.1) windows, linux etc 10.11.12.0/24 other net 1: connect with ipsec to another subnet. W

No multicast routing support on Virtio vtnet(4) drivers ?

2015-05-06 Thread Olivier Cochard-Labbé
I'm trying to set-up a multicast network lab using bhyve (then the vtnet interfaces). But when starting a PIM multicast routing daemon, I've got this error message: [root@router]~# service pimd start Starting pimd. pimd: 17:22:59.119 Failed adding VIF 0 (MRT_ADD_VIF) for iface vtnet0:(error 45): O