WARNING - OLD ARCHIVES

This is an archived copy of the Xen.org mailing list, which we have preserved to ensure that existing links to archives are not broken. The live archive, which contains the latest emails, can be found at http://lists.xen.org/
   
 
 
Xen 
 
Home Products Support Community News
 
   
 

xen-users

Re: [Xen-users] VPN

To: Chris de Vidal <Chris@xxxxxxxxxx>
Subject: Re: [Xen-users] VPN
From: Christian Hergert <christian.hergert@xxxxxxxxx>
Date: Tue, 19 Jul 2005 13:11:11 -0700
Cc: xen-users@xxxxxxxxxxxxxxxxxxx
Delivery-date: Tue, 19 Jul 2005 20:10:29 +0000
Domainkey-signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:subject:from:to:cc:in-reply-to:references:content-type:organization:date:message-id:mime-version:x-mailer; b=mtJWqSnAbl2xhSxXYuP32AZMwJ9brKzs7pCI23oKpTHgqricXXhTzeptHOyJ+qw4PrfXCBRnjf0OmaMDRbd6+D+hlFK3AmkeFS1zAQnwCMdzG0xlkLn5lfOTfStmF4OJdrZKsGh98V+iFiVfabvdYJ+8sed217MIF5eMXmDjwbc=
Envelope-to: www-data@xxxxxxxxxxxxxxxxxxx
In-reply-to: <15907.63.95.64.254.1121792039.squirrel@xxxxxxxxxxxx>
List-help: <mailto:xen-users-request@lists.xensource.com?subject=help>
List-id: Xen user discussion <xen-users.lists.xensource.com>
List-post: <mailto:xen-users@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=unsubscribe>
Organization: Medsphere Systems Corporation
References: <15907.63.95.64.254.1121792039.squirrel@xxxxxxxxxxxx>
Sender: xen-users-bounces@xxxxxxxxxxxxxxxxxxx
I have had very good success running the KAME/IPSec-Tools in 2.6 xenU
domains. I would suggest this exact setup as it has failed to go down in
the 6 months of uptime. Setup routing as you usually would. I believe
3des/SHA1 had the quickest reconnect times.

--
Christian Hergert <christian.hergert@xxxxxxxxxxxxx>
Medsphere Systems Corporation

On Tue, 2005-07-19 at 12:53 -0400, Chris de Vidal wrote:
> I want to cluster two XenLinux machines at two sites and join them to
> appear to be one intranet using a VPN daemon.  Thus it would make my LAN
> appear to have more hosts directly attached to it when they are really
> miles away:
> 10.0.0.2 web1.xen1.example.com <-- XenLinux machine 1 at Site 1
> 10.0.0.3 mail1.xen1.example.com <-- XenLinux machine 1 at Site 1
> 10.0.0.4 web2.xen2.example.com <-- XenLinux machine 2 at Site 2
> 10.0.0.5 mail2.xen2.example.com <-- XenLinux machine 2 at Site 2
> ...
> 
> Can I run the VPN daemon inside a guest domain?
> 
> Or should I run it on domain0?
> 
> Or do I need to run it externally?
> 
> CD
> 
> _______________________________________________
> Xen-users mailing list
> Xen-users@xxxxxxxxxxxxxxxxxxx
> http://lists.xensource.com/xen-users

Attachment: signature.asc
Description: This is a digitally signed message part

_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users
<Prev in Thread] Current Thread [Next in Thread>