Re: Auto-configuring clients + Xauth for ipsec (isakmpd) road warrior VPN

2015-04-24 Thread Yassen Damyanov
> On Friday, April 24, 2015 10:17 AM, Stuart Henderson > wrote: > > On 2015-04-24, Yassen Damyanov wrote: >> Stuart, thanks much for your help. >> >> How about running on different ports, maybe different enc interface, on the >> same machine? > > This came up before: > http://thread.gmane.org/

Re: Auto-configuring clients + Xauth for ipsec (isakmpd) road warrior VPN

2015-04-24 Thread Stuart Henderson
On 2015-04-24, Yassen Damyanov wrote: >> On Friday, April 24, 2015 9:36 AM, Stuart Henderson >> wrote: > >> > On 2015-04-23, Yassen Damyanov wrote: >>> Now I would like to auto-configure the clients (ike config pull) and allow >>> for "Mutual psk + xauth" authentication. Having no any clue on

Re: Auto-configuring clients + Xauth for ipsec (isakmpd) road warrior VPN

2015-04-23 Thread Yassen Damyanov
> On Friday, April 24, 2015 9:36 AM, Stuart Henderson > wrote: > > On 2015-04-23, Yassen Damyanov wrote: >> Now I would like to auto-configure the clients (ike config pull) and allow >> for "Mutual psk + xauth" authentication. Having no any clue on > how to do this > > OpenBSD isakmpd does

Re: Auto-configuring clients + Xauth for ipsec (isakmpd) road warrior VPN

2015-04-23 Thread Stuart Henderson
On 2015-04-23, Yassen Damyanov wrote: > I am trying to provide a road warrior ipsec vpn solution using isakmpd. > (The router already runs three site-to-site ipsec channels via isakmpd > already.) > > Now able to create the channel using a psk and a static ip on the client > side (no authenticatio

Auto-configuring clients + Xauth for ipsec (isakmpd) road warrior VPN

2015-04-23 Thread Yassen Damyanov
I am trying to provide a road warrior ipsec vpn solution using isakmpd. (The router already runs three site-to-site ipsec channels via isakmpd already.) Now able to create the channel using a psk and a static ip on the client side (no authentication other than the psk). Now I would like to auto-c