[Openswan Users] For l2tp/ipsec, linux gateway how to know the logon user name

顏宏愷 yhkai at cht.com.tw
Fri Oct 23 02:05:06 EDT 2009


Thanks Paul,
But if I have no central auth mechanism, how can I get connected user name from pppd?

Thanks a lot 
By the way, to Frank:
I have test ip-up , but it does not get anything about  peername.

Jimmy yen
-----Original Message-----
From: Paul Wouters [mailto:paul at xelerance.com] 
Sent: Thursday, October 22, 2009 9:17 PM
To: 顏宏愷
Cc: 'users at openswan.org'
Subject: Re: [Openswan Users] For l2tp/ipsec, linux gateway how to know the logon user name

On Thu, 22 Oct 2009, 顏宏愷 wrote:

> I successfully set up the l2tp/ipsec gateway with kernel 2.6.x and openswan 2.4.14 for window XP client.
> 
> The window XP client can logon and set up l2tp/ipsec  tunnel by  preshared key and user name /password
> which are
> 
>  configured in the ipsec.secrets and ppp/chap-secrets files in gateway
> 
> When user logon, I can see the tunnel up number added one via ipsec setup –status command.
> 
> My question is  ,in gateway side ,is there any way to  list  the user name who has logon or check every
> user’s logon state?  

Not really. It's pppd that does that. Neither xl2tpd or openswan know about the username. Only
pppd does. If you have some central auth mechanism for pppd (eg radius) then you might be
able to ask the radius server.

Paul


More information about the Users mailing list