<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: IPSec Tunneling Using FreeBSD</title>
	<atom:link href="http://www.techbabu.com/2009/10/ipsec-freebsd/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.techbabu.com/2009/10/ipsec-freebsd/</link>
	<description>A blog on latest technologies.</description>
	<lastBuildDate>Fri, 18 Nov 2011 00:40:19 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
	<item>
		<title>By: Aulia</title>
		<link>http://www.techbabu.com/2009/10/ipsec-freebsd/comment-page-1/#comment-10510</link>
		<dc:creator>Aulia</dc:creator>
		<pubDate>Sat, 09 Jul 2011 00:15:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.techbabu.com/?p=3312#comment-10510</guid>
		<description>Hi, 
can I have an ask for something with my configuration ?

I have finished this tutorial to build ipsec site to site, and the step has finished completely.
I have a simulation with a local design topology with two PC&#039;s (FreeBSD 7.0) and the replace for public network (internet media) with a single switch device in the middle, it&#039;s look like this :

(PC-A)
Local Network A : 192.168.0.1/24
Network (Gateway) A : 202.10.10.1/24

SWITCH

(PC-B)
Network (Gateway) B : 202.10.10.2/24
Local Network B : 172.168.0.1/24

I got connect all this host by used a static routing, at first the communication between two site is completely connect eg. (Ping to Local Network B to Local Network A).

but when I&#039;ve finished config the tunnel (GIF interface), started the racoon and ipsec daemon with those all configuration, I can&#039;t any longer ping the outside local network (Request Time out).

and sure there&#039;s no ESP protokol packet  in the output of tcpdump on the traffic, I&#039;ve tried Racoon-F command too, but the output is stack and look&#039;s not running.

Please, any suggest from this problem :)

I&#039;m really appreciated with the respons, Thank&#039;s in advance :)

Aulia.</description>
		<content:encoded><![CDATA[<p>Hi,<br />
can I have an ask for something with my configuration ?</p>
<p>I have finished this tutorial to build ipsec site to site, and the step has finished completely.<br />
I have a simulation with a local design topology with two PC&#8217;s (FreeBSD 7.0) and the replace for public network (internet media) with a single switch device in the middle, it&#8217;s look like this :</p>
<p>(PC-A)<br />
Local Network A : 192.168.0.1/24<br />
Network (Gateway) A : 202.10.10.1/24</p>
<p>SWITCH</p>
<p>(PC-B)<br />
Network (Gateway) B : 202.10.10.2/24<br />
Local Network B : 172.168.0.1/24</p>
<p>I got connect all this host by used a static routing, at first the communication between two site is completely connect eg. (Ping to Local Network B to Local Network A).</p>
<p>but when I&#8217;ve finished config the tunnel (GIF interface), started the racoon and ipsec daemon with those all configuration, I can&#8217;t any longer ping the outside local network (Request Time out).</p>
<p>and sure there&#8217;s no ESP protokol packet  in the output of tcpdump on the traffic, I&#8217;ve tried Racoon-F command too, but the output is stack and look&#8217;s not running.</p>
<p>Please, any suggest from this problem <img src='http://www.techbabu.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>I&#8217;m really appreciated with the respons, Thank&#8217;s in advance <img src='http://www.techbabu.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
<p>Aulia.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Zaeedh</title>
		<link>http://www.techbabu.com/2009/10/ipsec-freebsd/comment-page-1/#comment-5262</link>
		<dc:creator>Zaeedh</dc:creator>
		<pubDate>Thu, 17 Feb 2011 09:47:37 +0000</pubDate>
		<guid isPermaLink="false">http://www.techbabu.com/?p=3312#comment-5262</guid>
		<description>Techbabu, you have a systematic vision ! and this is shows on your tutorial, thanks a lot :)
now I&#039;ll should be have an &quot;A&quot; on my college paper.hehe..

Kind Regards,
Zaeedh</description>
		<content:encoded><![CDATA[<p>Techbabu, you have a systematic vision ! and this is shows on your tutorial, thanks a lot <img src='http://www.techbabu.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /><br />
now I&#8217;ll should be have an &#8220;A&#8221; on my college paper.hehe..</p>
<p>Kind Regards,<br />
Zaeedh</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: CS &#38; IT Solutions &#187; Blog Archive &#187; IPSec Tunneling Using FreeBSD</title>
		<link>http://www.techbabu.com/2009/10/ipsec-freebsd/comment-page-1/#comment-2320</link>
		<dc:creator>CS &#38; IT Solutions &#187; Blog Archive &#187; IPSec Tunneling Using FreeBSD</dc:creator>
		<pubDate>Fri, 04 Jun 2010 15:46:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.techbabu.com/?p=3312#comment-2320</guid>
		<description>[...] here    Tags: bsd, freebsd, how to install ipsec on freebsd, ipsec, ipsec for freebsd, ipsec freebsd, [...]</description>
		<content:encoded><![CDATA[<p>[...] here    Tags: bsd, freebsd, how to install ipsec on freebsd, ipsec, ipsec for freebsd, ipsec freebsd, [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ilya</title>
		<link>http://www.techbabu.com/2009/10/ipsec-freebsd/comment-page-1/#comment-528</link>
		<dc:creator>Ilya</dc:creator>
		<pubDate>Thu, 03 Dec 2009 10:22:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.techbabu.com/?p=3312#comment-528</guid>
		<description>Thanks for your answer.

Regards,
Ilya</description>
		<content:encoded><![CDATA[<p>Thanks for your answer.</p>
<p>Regards,<br />
Ilya</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: TechBabu</title>
		<link>http://www.techbabu.com/2009/10/ipsec-freebsd/comment-page-1/#comment-526</link>
		<dc:creator>TechBabu</dc:creator>
		<pubDate>Thu, 03 Dec 2009 09:32:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.techbabu.com/?p=3312#comment-526</guid>
		<description>Hi

The rules are very clear, we have two hosts ( Host -A 172.17.1.254 ) and  ( Host -B 172.18.1.254). with tunnels both end (Host -A 192.168.1.1) and (Host -B 192.168.2.1). the above rules are very simple. From (Host -A) traffic for (Host -B) will pass through (192.168.1.1).

Regards</description>
		<content:encoded><![CDATA[<p>Hi</p>
<p>The rules are very clear, we have two hosts ( Host -A 172.17.1.254 ) and  ( Host -B 172.18.1.254). with tunnels both end (Host -A 192.168.1.1) and (Host -B 192.168.2.1). the above rules are very simple. From (Host -A) traffic for (Host -B) will pass through (192.168.1.1).</p>
<p>Regards</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ilya</title>
		<link>http://www.techbabu.com/2009/10/ipsec-freebsd/comment-page-1/#comment-523</link>
		<dc:creator>Ilya</dc:creator>
		<pubDate>Thu, 03 Dec 2009 05:19:53 +0000</pubDate>
		<guid isPermaLink="false">http://www.techbabu.com/?p=3312#comment-523</guid>
		<description>Very good article, but I don&#039;t understand how you obtain from this rules in 

/etc/ipsec.conf
spdadd 172.17.1.254/32 172.18.1.254/32 ipencap -P out ipsec
esp/tunnel/192.168.1.1-192.168.2.1/require;
spdadd 172.18.1.254/32 172.17.1.254/32 ipencap -P in ipsec
esp/tunnel/192.168.2.1-192.168.1.1/require;

this result of setkey -DP
172.18.1.254[any] 172.17.1.254[any] ip4
        in ipsec
        esp/tunnel/172.18.1.254-172.17.1.254/require
        spid=2 seq=1 pid=1144
        refcnt=1
172.17.1.254[any] 172.18.1.254[any] ip4
        out ipsec
        esp/tunnel/172.17.1.254-172.18.1.254/require
        spid=1 seq=0 pid=1144
        refcnt=1

???? 
P.S. Sorry for my english ):</description>
		<content:encoded><![CDATA[<p>Very good article, but I don&#8217;t understand how you obtain from this rules in </p>
<p>/etc/ipsec.conf<br />
spdadd 172.17.1.254/32 172.18.1.254/32 ipencap -P out ipsec<br />
esp/tunnel/192.168.1.1-192.168.2.1/require;<br />
spdadd 172.18.1.254/32 172.17.1.254/32 ipencap -P in ipsec<br />
esp/tunnel/192.168.2.1-192.168.1.1/require;</p>
<p>this result of setkey -DP<br />
172.18.1.254[any] 172.17.1.254[any] ip4<br />
        in ipsec<br />
        esp/tunnel/172.18.1.254-172.17.1.254/require<br />
        spid=2 seq=1 pid=1144<br />
        refcnt=1<br />
172.17.1.254[any] 172.18.1.254[any] ip4<br />
        out ipsec<br />
        esp/tunnel/172.17.1.254-172.18.1.254/require<br />
        spid=1 seq=0 pid=1144<br />
        refcnt=1</p>
<p>????<br />
P.S. Sorry for my english ):</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: admin</title>
		<link>http://www.techbabu.com/2009/10/ipsec-freebsd/comment-page-1/#comment-365</link>
		<dc:creator>admin</dc:creator>
		<pubDate>Thu, 29 Oct 2009 06:11:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.techbabu.com/?p=3312#comment-365</guid>
		<description>Hmm.

I haven&#039;t try it. But I think it is possible on single NIC.

BTW: thanks for your nice comment.

Regards,
Tech Babu</description>
		<content:encoded><![CDATA[<p>Hmm.</p>
<p>I haven&#8217;t try it. But I think it is possible on single NIC.</p>
<p>BTW: thanks for your nice comment.</p>
<p>Regards,<br />
Tech Babu</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Vimuth Dayaratne</title>
		<link>http://www.techbabu.com/2009/10/ipsec-freebsd/comment-page-1/#comment-364</link>
		<dc:creator>Vimuth Dayaratne</dc:creator>
		<pubDate>Wed, 28 Oct 2009 17:44:52 +0000</pubDate>
		<guid isPermaLink="false">http://www.techbabu.com/?p=3312#comment-364</guid>
		<description>What an excellent piece of guide. Out of curiosity Sir can we do this exercise having only one NIC&#039;s installed on either of those BSD boxes which we are creating the tunnel in between? Possibly by means of IP aliasing may be if at all supported? Please upload more BSD guides. Thank you very much.

Best Regards
Vimuth
PS: Who is the author of this article? Please mention the name of the gentleman who wrote this. :)</description>
		<content:encoded><![CDATA[<p>What an excellent piece of guide. Out of curiosity Sir can we do this exercise having only one NIC&#8217;s installed on either of those BSD boxes which we are creating the tunnel in between? Possibly by means of IP aliasing may be if at all supported? Please upload more BSD guides. Thank you very much.</p>
<p>Best Regards<br />
Vimuth<br />
PS: Who is the author of this article? Please mention the name of the gentleman who wrote this. <img src='http://www.techbabu.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
</channel>
</rss>

