
Good, Bad and the Ugly
FreeSwan works just fine. Actually works very well. Works with many different configs.
FreeSwan also has the tendancy to be Extremely picky about things. Everything *MAY* look 1000000% okay on both ends, but there is that extra whitespace/unprintable char at he end of something... oops. (This might have been fixed recently, seen alot of work about this anomaly)
FreeSwan tends to be very Kernel Specific... ie: The same kernel needed to be used at both ends (literally that same one from the same package (compile... etc). More recently this has been resolved partly(mostly) (as well there has been a lot of work done on this). Also, it doesn't like NAT. It can work with it, but really doesn't like NAT. behind the VPN link sure no problem... but It likes to be a real host on the Internet and full IP DNS name control by you as well.
Other than that, if you can work through it's various problems (yes quite a few I know bleh) it really seems to have alot of functionality and it *DOES* work.
[link|mailto:greg@gregfolkert.net|greg] - IT Grand-Master for Anti-President |
[link|http://www.iwethey.org/ed_curry/|REMEMBER ED CURRY!] |
THEY ARE WATCHING YOU.
The time has come for you to take the last step.
You must love THEM.
It is not enough to obey THEM.
You must love THEM.
PEACE BEGETS WAR, SLAVERY IS FREEDOM, STRENGTH IN IGNORANCE.