<html>
<head>
<style>
.hmmessage P
{
margin:0px;
padding:0px
}
body.hmmessage
{
FONT-SIZE: 10pt;
FONT-FAMILY:Tahoma
}
</style>
</head>
<body class='hmmessage'>Paul, and Lawrence,<BR>
<BR>
Thank you for your replies. <BR>
<BR>
Will Openswan be able to support the 2 or more virtual interfaces to 1 physical interface in the future?<BR>
<BR>
Would such a change violate the IPsec protocol or how it was intended to be used? <BR>
<BR>
Thank you,<BR>
<BR><BR> <BR>
<P class=EC_EC_MsoNormal><A target=_blank name=_MailAutoSig><SPAN style="FONT-SIZE: 12pt"><FONT face="" color=#000000><FONT face=Calibri>*********************************</FONT></FONT></SPAN></A></P>
<P class=EC_EC_MsoNormal><SPAN><B><I><SPAN style="FONT-SIZE: 12pt"><FONT face="" color=#000000><FONT face=Calibri>Jennifer Agarwal</FONT></FONT></SPAN></I></B></SPAN></P>
<P class=EC_EC_MsoNormal><SPAN><SPAN><FONT face="" size=3><FONT color=#000000><FONT face=Calibri>President / Principal Engineer<BR></FONT></FONT></FONT></SPAN></SPAN></P>
<P class=EC_EC_MsoNormal><SPAN><SPAN><FONT face="" size=3><FONT color=#000000><FONT face=Calibri>Exquisite Software Solutions, LLC</FONT></FONT></FONT></SPAN></SPAN></P>
<P class=EC_EC_MsoNormal><SPAN><SPAN><FONT face="" size=3><FONT color=#000000><FONT face=Calibri>(240) 483-8619</FONT></FONT></FONT></SPAN></SPAN></P>
<P class=EC_EC_MsoNormal><SPAN><SPAN><FONT face="" size=3><FONT color=#000000><FONT face=Calibri>jsagarwal@exqss.com</FONT></FONT></FONT></SPAN></SPAN></P>
<P class=EC_EC_MsoNormal><SPAN><SPAN style="FONT-SIZE: 12pt; FONT-FAMILY: 'Arial','sans-serif'"><FONT face="" color=#000000> </FONT></SPAN></SPAN></P>
<P class=EC_EC_MsoNormal><SPAN><SPAN style="FONT-SIZE: 12pt"><FONT face="" color=#000000><FONT face=Calibri>*********************************</FONT></FONT></SPAN></SPAN></P><BR><BR>
<HR id=stopSpelling>
> Date: Wed, 15 Oct 2008 22:20:33 -0400<BR>> From: paul@xelerance.com<BR>> To: lawrence.manning@smoothwall.net<BR>> CC: jsagarwal@exqss.com; users@openswan.org<BR>> Subject: Re: [Openswan Users] 2 or more virtual interfaces defined to 1 physical interface<BR>> <BR>> On Wed, 15 Oct 2008, Lawrence Manning wrote:<BR>> <BR>> > > In ipsec.conf can you do the following, assign multiple virtual <BR>> > > interfaces to a single physical interface?<BR>> > ><BR>> > > config<BR>> > > interfaces="ipsec0=eth0 ipsec1=eth0<BR>> <BR>> > My understanding is this is not possible. At least in openswan 2.4.9 <BR>> > (probably old) you cannot do this.<BR>> <BR>> It is still not possible. The ipsecX devices are just ways for the<BR>> klips module to obtain packets via routing. You only need one per<BR>> interface.<BR>> <BR>> > For traffic stats, iptables should probably suffice. There are <BR>> > doubtless free tools that can collect this information. You should be <BR>> > able to create a iptable rule for your tunnels and collect the stats <BR>> > that way.<BR>> <BR>> You could also use L2TP and have pppd do counting/accouting.<BR>> <BR>> Paul<BR><br /><hr />Check the weather nationwide with MSN Search <a href='http://search.msn.com/results.aspx?q=weather&FORM=WLMTAG' target='_new'>Try it now!</a></body>
</html>