[Openswan dev] Bind Pluto to *:500 / *:4500

Henrik Nordstrom hno at marasystems.com
Mon Nov 29 13:18:18 CET 2004


On Sun, 28 Nov 2004, Gabe wrote:

> Is it possible to bind pluto to *:4500 & *:500 instead of it binding
> to the current ip? The problem is, when you have a dynamic ip
> on an openswan box connected directly to the i-net, and the ISP
> hands out dynamic IPs, openswan won't respond anymore to incoming
> requests after the ip has changed. This is because Pluto binds to the
> current ppp0 IP and not to 0.0.0.0:500 / 4500.

There is many things dependent on the IP, at least when using KLIPS.

The quickest solution is to in your dhcp client configuration add a script 
which adjust the ipsec device IP and then issues a "ipsec whack --listen" 
to tell pluto that the IP address have changed.

Regards
Henrik


More information about the Dev mailing list