• Is AES-256 the same as Rijndael 256 ?

    Locked
    2
    0 Votes
    2 Posts
    11k Views
    dotdashD

    Yes, it is. Or pretty much.
    From the Wikipedia article: http://en.wikipedia.org/wiki/Rijndael
    Strictly speaking, AES is not precisely Rijndael (although in practice they are used interchangeably) as Rijndael supports a larger range of block and key sizes; AES has a fixed block size of 128 bits and a key size of 128, 192, or 256 bits, whereas Rijndael can be specified with key and block sizes in any multiple of 32 bits, with a minimum of 128 bits and a maximum of 256 bits.

  • 0 Votes
    9 Posts
    12k Views
    S

    No - we never did get this resolved.

    We engaged the contractor's parent company to see if they could enable NAT traversal, or at least look into it - but beyond saying that they would look into it, were not able to get any attention on the topic.  The immediate project need has diminished - as the initial scope was completed - but I envision this coming back up again soon.  If I knew exactly what they were doing on their end I would try to reproduce the scenario, but as it stands we're at a dead-end until it the need comes back up, or until we run into a similar issue with a different client.

    If you make any progress on this in the iterim - I would love to hear about it - please post and/or PM me.  I'll of course do the same if/when it becomes an issue again for us.

    Thanks!

  • Smoothwall 3.0 to pfsense IPSec site to site help?

    Locked
    2
    0 Votes
    2 Posts
    6k Views
    B

    NM.  I just had someopne install pfsense on the smoothwall machine.  Too much hassle otherwise.

  • PfSense <–> IPcop IPSEC VPN

    Locked
    8
    0 Votes
    8 Posts
    7k Views
    H

    Ok, no problem, have fun
    Greetings from Germany
    heiko

  • Using pfSense to manage a VPN connection to Cisco PIX

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • MOVED: pfsense and a crypto card for vpn acceleration

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Route all LAN traffic to gateway across IPSec

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    C

    bump…
    I too am interested in a solution as such. I am under the impression you need to make an ipsec rule that allows traffic from 0.0.0.0 to any or something along those lines?

  • How to solve Local and Remote IP conflict?

    Locked
    3
    0 Votes
    3 Posts
    4k Views
    dotdashD

    Another solution is to pitch in on the existing bounty. http://forum.pfsense.org/index.php/topic,10570.0.html

  • IPSec VPN with Public IP as the local subnet and remote subnet

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Site to site VPN drops after lifetime

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Site-To-Site couldn't ping, recreated, now won't connect

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    F

    Ok, I'll try to start over.
    I didn't create firewall rules, which was probably why it didn't work originally, thanks for the heads-up.

  • Help, Site to Site (endian to pfsense)

    Locked
    6
    0 Votes
    6 Posts
    8k Views
    P

    Thanks for your help guys, i gave up on endian to pfsense through ipsec, i put in a linksys vpn router into the office with endian and put untangle onto the endian pc for web filtering etc…

  • Dead Peer Detection

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    dotdashD

    Check out IPSec config on the new 1.3AlphaAlpha builds- It has DPD and more.

  • Remote Access

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    dotdashD

    IMO, IPSec is more suited to permanent site-site connections.
    OpenVPN is more secure, but needs a client-side app. PPTP may be a better choice if you need occasional access from various places- you can use the stock VPN wizard on Windows boxes.

  • IPSec will not connect (racoon: couldn't find configuration)

    Locked
    1
    0 Votes
    1 Posts
    5k Views
    No one has replied
  • Cisco PIX disconnect issue.

    Locked
    12
    0 Votes
    12 Posts
    10k Views
    D

    I've found a confirmation of what heiko said about the identification mode with a preshared key, in the source code
    ipsec_doi.c
    /* In main mode with pre-shared key, only address type can be used. */

  • IPSec Mobile Clients

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Racoon "unsupported PF_KEY message REGISTER"

    Locked
    1
    0 Votes
    1 Posts
    7k Views
    No one has replied
  • Mobile IPSEC issue

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    H

    1.21 isn´t available at the moment

  • 0 Votes
    1 Posts
    2k Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.