From owner-FreeBSD-net-jp@jp.FreeBSD.org Thu Nov 20 18:30:05 2003
Received: (from daemon@localhost)
	by castle.jp.FreeBSD.org (8.11.6p2+3.4W/8.11.3) id hAK9U5l25444;
	Thu, 20 Nov 2003 18:30:05 +0900 (JST)
	(envelope-from owner-FreeBSD-net-jp@jp.FreeBSD.org)
Received: from gate.m-saki.dyndns.org ([2001:3e0:36a:0:260:94ff:fef0:2dd])
	by castle.jp.FreeBSD.org (8.11.6p2+3.4W/8.11.3) with ESMTP/inet6 id hAK9U4M25436
	for <FreeBSD-net-jp@jp.FreeBSD.org>; Thu, 20 Nov 2003 18:30:04 +0900 (JST)
	(envelope-from m-saki@rr.iij4u.or.jp)
Received: from miffy.taihei-dengyo.co.jp (p1030-ipbffx01maru.tokyo.ocn.ne.jp [218.43.19.158])
	(user=mizutani mech=CRAM-MD5 bits=0)
	by gate.m-saki.dyndns.org (8.12.7/8.12.7) with ESMTP id hAK9Tx0v013187
	for <FreeBSD-net-jp@jp.FreeBSD.org>; Thu, 20 Nov 2003 18:29:59 +0900 (JST)
	(envelope-from m-saki@rr.iij4u.or.jp)
Message-ID: <87brr7bd61.wl@miffy.taihei-dengyo.co.jp>
From: Masaki Mizutani <m-saki@rr.iij4u.or.jp>
To: FreeBSD-net-jp@jp.FreeBSD.org
In-Reply-To: <200311200731.QAA08305@astemfs.astem.or.jp>
	<009901c3af41$1eb0bca0$f401a8c0@SYSTEM04>
References: <200311200727.QAA07833@astemfs.astem.or.jp>
	<200311200731.QAA08305@astemfs.astem.or.jp>
User-Agent: Wanderlust/2.10.0 (Venus) SEMI/1.14.4 (Hosorogi) SLIM/1.14.9 (MEGUMI) APEL/10.4 MULE XEmacs/21.4 (patch 12) (Portable Code) (i386--freebsd)
X-Face: DP-3apzI<SXXJs>,JOcx>nG;Fs;Mwu41fN=FKlS)v*@UCXto4?HI{:v@j|}_Na+S}Ot(-Q.
 y"4-bLy7Rk;b2_s&?}!Pye?I~\7Sf=j.;hcg.04R@:\{rR]79zY4zS-7+?#~!9_cyn:D@T0iIR;$6X
 gd5cUd[.][-0x'$(V8-pK?[7CW^^V>@'iNga\>Z'
MIME-Version: 1.0 (generated by SEMI 1.14.4 - "Hosorogi")
Content-Type: text/plain; charset=ISO-2022-JP
Reply-To: FreeBSD-net-jp@jp.FreeBSD.org
Precedence: list
Date: Thu, 20 Nov 2003 18:29:58 +0900
X-Sequence: FreeBSD-net-jp 4031
Subject: [FreeBSD-net-jp 4031] Re: IPsec =?ISO-2022-JP?B?GyRCJUgbKEI=?=
 =?ISO-2022-JP?B?GyRCJXMlTSVrJWIhPCVJRjE7ThsoQg==?=(?)
 =?ISO-2022-JP?B?GyRCJE5ETD8uGyhC?= 
Sender: owner-FreeBSD-net-jp@jp.FreeBSD.org
X-Originator: m-saki@rr.iij4u.or.jp
X-Distribute: distribute version 2.1 (Alpha) patchlevel 24e+031103

$B$_$:$?$K$G$9!#(B

At Thu, 20 Nov 2003 16:31:40 +0900,
Kenji Yabuuchi <yab@astem.or.jp> wrote:
> Windows2000$B$G$I$&$9$k$+!"$NOC$@$C$?$N$G$9$M!#$9$_$^$;$s!#$o$+$j(B
> $B$^$;$s(B _o_

$B$=$&$J$s$G$9!#3($@$1$G@_Dj$r:\$;$k$N$rK:$l$F$*$j$^$7$?!#$4$a$s$J$5$$!#(B
$B0l1~!"(B/etc/ipsec.conf $B$O(B

# 192.168.0.1
spdadd 192.168.0.1/32 0.0.0.0/0 any -P in ipsec esp/tunnel/192.168.0.1-192.168.0.254/require;
spdadd 0.0.0.0/0 192.168.0.1/32 any -P out ipsec esp/tunnel/192.168.0.254-192.168.0.1/require;
# 192.168.0.2
spdadd 192.168.0.2/32 0.0.0.0/0 any -P in ipsec esp/tunnel/192.168.0.2-192.168.0.254/require;
spdadd 0.0.0.0/0 192.168.0.2/32 any -P out ipsec esp/tunnel/192.168.0.254-192.168.0.2/require;

$B$3$s$J46$8$K$J$C$F$$$^$9!#(BWindows2000$BB&$b$3$lAjEv!#(B

$BB>$K$b(BDM$B$G$4;XE&D:$$$?$N$G$9$,(B

> $B$_$:$?$K$5$s$O(BPC-1$B$H(BPC-2$B$rD>@\OC$r$5$;$?$$$N$G$9$+!)(B
> $B$=$l$H$b(BPC-1$B$+$i(BPC-2$B08$K(Bping$B$r<B9T$7$?>l9g!"(B
> PC-1 >>> gate-A >>> PC-2 >>> gate-A >>> PC-1$B$H$$$&7PO)$r(B
> $BDL$C$F$G$bDL?.$G$-$l$P$$$$$s$G$7$g$&$+!)(B

$B$3$NE@$K$D$$$F$O2?EY$+;n9T:x8m$7$F$_$^$7$?!#(B
$B!&D>@\$*OC$5$;$h$&$H$7$?>l9g(B
	- PC-1, PC-2$B4V$G$b%H%s%M%kD%$i$J$-$c$$$1$J$$$h$M!#(B
	- 1$BBfA}$($kEY$K%U%#%k%?=q$/$N$+$7$i!#(B
$B!&(Bgate-A$B7PM3$N>l9g(B
	...???

$B$9$_$^$;$s!"$3$N(B(gate-A$B7PM3(B)$B$d$jJ}$,$h$/$o$+$i$J$$$s$G$9$1$I(B
divert$B$H$+;H$&$N$G$7$g$&$+!"$=$l$H$b(BBRIDGE$B$rM-8z$K$9$k$H$+(B?
$B$&!<$s!"A4A3;W$$IU$+$J$$$s$G$9$1$I!"%R%s%H$,$"$j$^$7$?$i(B
$B65$($F2<$5$$!#(B

-- 
$B?eC+!!@5<y(B / m-saki@rr.iij4u.or.jp
PGP Fingerprint: E551 12B2 CF6B 50EA BD5C  CFD1 FF41 0F6E 595C 92CE
PGP Public Key : http://m-saki.dyndns.org:8888/%7Emizutani/mizutani_gpg.asc
