[Openswan Users] For l2tp/ipsec, linux gateway how to know the logon user name
顏宏愷
yhkai at cht.com.tw
Fri Oct 23 02:05:06 EDT 2009
Thanks Paul,
But if I have no central auth mechanism, how can I get connected user name from pppd?
Thanks a lot
By the way, to Frank:
I have test ip-up , but it does not get anything about peername.
Jimmy yen
-----Original Message-----
From: Paul Wouters [mailto:paul at xelerance.com]
Sent: Thursday, October 22, 2009 9:17 PM
To: 顏宏愷
Cc: 'users at openswan.org'
Subject: Re: [Openswan Users] For l2tp/ipsec, linux gateway how to know the logon user name
On Thu, 22 Oct 2009, 顏宏愷 wrote:
> I successfully set up the l2tp/ipsec gateway with kernel 2.6.x and openswan 2.4.14 for window XP client.
>
> The window XP client can logon and set up l2tp/ipsec tunnel by preshared key and user name /password
> which are
>
> configured in the ipsec.secrets and ppp/chap-secrets files in gateway
>
> When user logon, I can see the tunnel up number added one via ipsec setup –status command.
>
> My question is ,in gateway side ,is there any way to list the user name who has logon or check every
> user’s logon state?
Not really. It's pppd that does that. Neither xl2tpd or openswan know about the username. Only
pppd does. If you have some central auth mechanism for pppd (eg radius) then you might be
able to ask the radius server.
Paul
More information about the Users
mailing list