ISAKMPD and Variable IP addresses

Angelos D. Keromytis angelos at DSL.CIS.UPENN.EDU
Tue Dec 14 15:36:25 EST 1999


> Ok, I've been confronted with a strange request. I'm using OpenBSD 2.6 with
>their implementation of ISAKMPD. I was asked if we could implement a VPN
>between our office and a laptop that will be moving all around the world.
>Now, in the config files, it asks for the IP address of the Peer. I figured
>"This is free software and doesn't support this feature" but then I checked
>out our VPN-1 setup and it doesn't either. Can somebody please explain how
>the theory how this is done or will I have to develop my own client/server
>to modify my setups every time an IP changes.

In fact, it does support empty Peer address; there's a default Phase-1 entry
you can use for any that don't match an ID:

[Phase 1]
Default=                VPN-peer-client-default

-Angelos

VPN is sponsored by SecurityFocus.COM




More information about the VPN mailing list