[Openswan Users] DHCP over IPSec

Paul Wouters paul at xelerance.com
Thu Sep 24 00:02:03 EDT 2009


On Wed, 23 Sep 2009, Mohit Mehta wrote:

>> Not really. It never became a standard. There are some hacks but nothing
>> guaranteeing any kind of interop.
>
> Out of curiosity, what would those hacks be?

There might be some old document in doc/ or docs/ but it involved
setting up a conn with left=0.0.0.0/0 or 255.255.255.255 and then
another conn for the actual ip used.

No one is doing these things anymore. Everyone moved to L2TP or XAUTH
with ModeConfig. The latter mostly for Cisco shops.

Paul

> Mohit
>
> ----- Paul Wouters <paul at xelerance.com> wrote:
>> On Wed, 23 Sep 2009, Iker Etxebarria wrote:
>>
>>> Does Openswan support DHCP over IPSec?
>>
>> Not really. It never became a standard. There are some hacks but nothing
>> guaranteeing any kind of interop.
>>
>>> If the answer is NO, how can I configure my IPSec client to use a fixed IP address of the network I want to connect?
>>
>> IPsec+L2TP and using pppd to assign a static ip /etc/ppp/chap-secrets
>>
>> Paul
>> _______________________________________________
>> Users at openswan.org
>> http://lists.openswan.org/mailman/listinfo/users
>> Building and Integrating Virtual Private Networks with Openswan:
>> http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155
>


More information about the Users mailing list