[Openswan Users]

Paul Wouters paul at xelerance.com
Wed Feb 8 20:06:25 CET 2006


On Wed, 8 Feb 2006, Andy wrote:

> Using KLIPS I was able to do something similar by using the "ipsec
> tncfg" command (see man ipsec_tncfg(1) for details) to reattach the
> ipsec0 to ppp0 after the PPP interface got dropped and reconnected. I
> think it only works if your IP address doesn't change.
> I used the /etc/ppp/ip-up.local script hooks to do that.

Yes.

> If your PPP IP changes, I think you're out of luck, because pluto would
> need to be restarted in order to bind to the new interface address.

Just add "ipsec whack --listen" to your /etc/ppp/ip-up.local as well.

Paul


More information about the Users mailing list