Re: Roadwarriors vpn clients with x509 certs on OpenBSD 4.0

2006-11-30 Thread Albert Chin
On Thu, Nov 23, 2006 at 01:03:00PM +0100, carlopmart wrote: > We have several problems with ipsec connections for roadwarriors > clients using x509 certificates. We use ipsec.conf to accomplish this > configuration: > > ike passive proto tcp from 192.168.2.3 to { 129.31.0.0/16, > 129.11.0.0/16,

Re: Problem with roadwarriors vpn clients with x509 certs on OpenBSD 4.0

2006-11-23 Thread carlopmart
Sorry I forgot to mention that user1 and user2 has the same public ip. many thanks .. carlopmart wrote: Hi all, We have several problems with ipsec connections for roadwarriors clients using x509 certificates. We use ipsec.conf to accomplish this configuration: ike passive proto tcp from

Roadwarriors vpn clients with x509 certs on OpenBSD 4.0

2006-11-23 Thread carlopmart
Hi all, We have several problems with ipsec connections for roadwarriors clients using x509 certificates. We use ipsec.conf to accomplish this configuration: ike passive proto tcp from 192.168.2.3 to { 129.31.0.0/16, 129.11.0.0/16, 129.61.0.0/16, 129.71.0.0/16 } port 5900 \ quick au