Koozali.org: home of the SME Server

freeswan and dhcp cable modem

steve

freeswan and dhcp cable modem
« on: February 20, 2002, 04:00:03 AM »
Any way to get freeswan 1.91 working on SME 5.1.2 between one box on T1-static IP and one box one cablemodem DHCP IP???

followed how-to at

http://www.myezserver.com/docs/mitel/freeswan-howto.html

and got it working between 2 boxes on T1 static IP but no workie on DHCP cable modem.

Thanks

-steve

Lloyd Keen

Re: freeswan and dhcp cable modem
« Reply #1 on: February 20, 2002, 02:36:59 PM »
Yeah good luck, we put in a few hours on that scenario as well. I think you have to set it up as a road warrior setup. Treat the cable side as if were a dial up connection. I haven't tried it yet but wouldn't mind having another go when I get a bit of time up my sleeve.

Todd Pearsall

Re: freeswan and dhcp cable modem
« Reply #2 on: February 20, 2002, 07:38:19 PM »
Does the dynamic IP really change?  I had the same IP address for 2 years even though it was dynamic.  When @Home tanked I just changed the config to the new IP from Comcast and it hasn't changed in 2 months.

steve

Re: freeswan and dhcp cable modem
« Reply #3 on: February 20, 2002, 08:06:29 PM »
It just changed a week or two ago when I upgraded from 4.1.2 to 5.1.2 (probably cuz the upgrade took so long on my P200 :^)
before that I had the same IP for at least 8 or 10 months.

What config did you change??
Do I have to modify some config file somewhere??

This is what I get in the 'secure' log, and lots of it:

Feb 15 01:15:34 galileo Pluto[7811]: "gate.10.10.3.0-gate.local" #650: route-host output: SIOCADDRT: Network is unreachable
Feb 15 01:15:34 galileo Pluto[7811]: "gate.10.10.3.0-gate.local" #650: route-host output: /usr/lib/ipsec/_updown: route add -net XXX.XXX.XXX.XXX netmask 255.255.255.255' failed
Feb 15 01:15:34 galileo Pluto[7811]: "gate.10.10.3.0-gate.local" #650: route-host command exited with status 7
Feb 15 01:15:40 galileo Pluto[7811]: "gate.10.10.3.0-net.local" #651: up-client output: You cannot mix the ipfwadm' wrapper with ipchains.
Feb 15 01:15:40 galileo Pluto[7811]: "gate.10.10.3.0-net.local" #651: up-client output: You must delete all user chains and flush all built-in chains
Feb 15 01:15:40 galileo Pluto[7811]: "gate.10.10.3.0-net.local" #651: up-client output: if you want to use the ipfwadm' wrapper.
Feb 15 01:15:40 galileo Pluto[7811]: "gate.10.10.3.0-net.local" #651: up-client command exited with status 1