[Openswan dev] Bind Pluto to *:500 / *:4500
hno at marasystems.com
Mon Nov 29 13:18:18 CET 2004
On Sun, 28 Nov 2004, Gabe wrote:
> Is it possible to bind pluto to *:4500 & *:500 instead of it binding
> to the current ip? The problem is, when you have a dynamic ip
> on an openswan box connected directly to the i-net, and the ISP
> hands out dynamic IPs, openswan won't respond anymore to incoming
> requests after the ip has changed. This is because Pluto binds to the
> current ppp0 IP and not to 0.0.0.0:500 / 4500.
There is many things dependent on the IP, at least when using KLIPS.
The quickest solution is to in your dhcp client configuration add a script
which adjust the ipsec device IP and then issues a "ipsec whack --listen"
to tell pluto that the IP address have changed.
More information about the Dev