OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: VPN problems
From: Michael Stella (m.stellamyseasonscorp.com)
Date: Wed Dec 13 2000 - 10:43:36 CST


I'm having some weird problems with trying to set up a VPN with manual keys.
I'm using a 2.7 build, connecting to a Cisco 3000 series VPN Concentrator (aka
Altiga).

First, I was wondering if the key files need to be in a specific format (other
than just containing the key).

Second, I can't seem to get the OpenBSD machine to accept my ipsecadm command.
I tried:

/sbin/ipsecadm new esp -src $SRCIP -dst $DSTIP -tunnel $SRCIP $DSTIP \
  -spi 1000 -enc 3des -keyfile /usr/share/ipsec/key \
  -auth md5 -authkeyfile /usr/share/ipsec/authkey

I get:
write: Invalid argument

I get the same result when I run /usr/share/ipsec/rc.vpn . Does anyone have a
clue what this means?

I have set:
net.inet.esp.enable=1
net.inet.ah.enable=1
net.inet.ipforwarding=1

-- 
Michael Stella				      mySEASONS.com
Sr. Unix Administrator			http://www.myseasons.com
860-395-1732 x110
Got my sights on the stars, won't get that far but I'll try anyway.
  - Rush