[Openswan Users] Getting IPSec policy into kernel

Marcus Carlson marcus at mejlamej.nu
Sat Mar 17 19:40:23 EDT 2007


Hi,

What about ipsec auto --add <connection-name>?

As far as I know it is supposed to do what you request...

Marcus

Venkat Yekkirala skrev:
> Hi,
> 
> I am looking for a way to have just the IPSec policy to be
> inserted into the kernel initially, and for the SAs to be
> negotiated ON DEMAND.
> 
> When I issue the following command, the SAs as well as the SPD
> are loaded in the kernel.
> 
> ipsec auto --up <connection-name>
> 
> I have looked at the "asynchronous" option to --up, but that still
> doesn't result in ONLY the IPSec policy being loaded into the SPD.
> 
> Thanks,
> 
> venkat
> _______________________________________________
> Users at openswan.org
> http://lists.openswan.org/mailman/listinfo/users
> Building and Integrating Virtual Private Networks with Openswan: 
> http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155



More information about the Users mailing list