[PATCH] ipsec esp ipfw interaction

2003-01-16 Thread Bjoern Fischer
Hello, in early January this year there was a discussion about the way ipfw interacts with ipsec. Last November ipfw was changed to process ipsec datagrams twice: Once before and a second time after the decoding procedure. This makes life easier for people who use gif tunnels with ipsec transport

ORiNOCO Gold wi0 <-> Lucent/Agere AS-2000

2002-04-09 Thread Bjoern Fischer
Hello, has anyone successfully connected an ORiNOCO Gold or similar wi0 running under FreeBSD 4.5-STABLE to a Lucent/Agere Access Server AS-2000? Do I have to port the Lucent asclient for Linux to FreeBSD or will the usual FreeBSD included tools suffice? -Bjorn Fischer To Unsubscribe: send mai

Re: bridged interfaces don't see broadcasts [update]

2002-01-15 Thread Bjoern Fischer
Here an update. While Julian is looking for an netgraph solution, I looked into Luigi's bridging code. And found something, I believe: > net.link.ether.bridge_cfg: vr0:0,ed1:0 > net.link.ether.bridge: 1 > vr0: flags=8943 mtu 1500 > inet 192.168.43.1 netmask 0xff00 broadcast 192.168.4

Re: bridged interfaces don't see broadcasts

2002-01-15 Thread Bjoern Fischer
On Tue, Jan 15, 2002 at 02:58:04PM -0800, Julian Elischer wrote: > ok.. > I'll see if I can come up with a way to hook multiple netgraph nodes to an > ethernet node... Thank you. I don't know if it does matter, but neither ed1 nor vr0 is involved in pppoe, so the example in /usr/share/examples/ne

Re: bridged interfaces don't see broadcasts

2002-01-15 Thread Bjoern Fischer
Hello Julian, > What happens if you use netgraph bridging? > (/usr/share/examples/netgraph) I knew that you would advertise this ;-) Ok, since I'm already using netgraph for pppoe on the same machine, I tried netgraph bridging at first. But with netgraph bridging it was even worse: Not even the

bridged interfaces don't see broadcasts

2002-01-15 Thread Bjoern Fischer
Hello, on a NIS and NFS serving machine I bridged two ethernet NICs: net.link.ether.bridge_cfg: vr0:0,ed1:0 net.link.ether.bridge: 1 net.link.ether.bridge_ipfw: 0 net.link.ether.bridge_ipfw_drop: 0 net.link.ether.bridge_ipfw_collisions: 0 vr0: flags=8943 mtu 1500 inet6 fe80::250:baff:fe

Re: IPSEC Tunnels vs Dynamoic IPs

2001-09-19 Thread Bjoern Fischer
On Tue, Sep 18, 2001 at 11:09:18PM -0700, Jerry Murdock wrote: > Can an IPSEC tunnel be established between two LANs when one side is using > PPPoE/DSL with dynamic IP using either manual keys or IKE? [...] > A simple "yes," "no," or "ARE YOU NUTS!?" would be adequate, but any > pointers on a "y