Xen 
 
Home About Xen.org Xen Xen Summit Wiki Mailing List Bug Tracker Xen Downloads
 
   
 

xen-users

Re: [Xen-users] VPN

To: Chris de Vidal <Chris@xxxxxxxxxx>
Subject: Re: [Xen-users] VPN
From: Christian Hergert <christian.hergert@xxxxxxxxx>
Date: Tue, 19 Jul 2005 13:11:11 -0700
Cc: xen-users@xxxxxxxxxxxxxxxxxxx
Delivery-date: Tue, 19 Jul 2005 20:10:29 +0000
Domainkey-signature: a=rsa-sha1; q=dns; c=nofws; s=beta; d=gmail.com; h=received:subject:from:to:cc:in-reply-to:references:content-type:organization:date:message-id:mime-version:x-mailer; b=mtJWqSnAbl2xhSxXYuP32AZMwJ9brKzs7pCI23oKpTHgqricXXhTzeptHOyJ+qw4PrfXCBRnjf0OmaMDRbd6+D+hlFK3AmkeFS1zAQnwCMdzG0xlkLn5lfOTfStmF4OJdrZKsGh98V+iFiVfabvdYJ+8sed217MIF5eMXmDjwbc=
Envelope-to: www-data@xxxxxxxxxxxxxxxxxxx
In-reply-to: <15907.63.95.64.254.1121792039.squirrel@xxxxxxxxxxxx>
List-help: <mailto:xen-users-request@lists.xensource.com?subject=help>
List-id: Xen user discussion <xen-users.lists.xensource.com>
List-post: <mailto:xen-users@lists.xensource.com>
List-subscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=subscribe>
List-unsubscribe: <http://lists.xensource.com/cgi-bin/mailman/listinfo/xen-users>, <mailto:xen-users-request@lists.xensource.com?subject=unsubscribe>
Organization: Medsphere Systems Corporation
References: <15907.63.95.64.254.1121792039.squirrel@xxxxxxxxxxxx>
Sender: xen-users-bounces@xxxxxxxxxxxxxxxxxxx
I have had very good success running the KAME/IPSec-Tools in 2.6 xenU
domains. I would suggest this exact setup as it has failed to go down in
the 6 months of uptime. Setup routing as you usually would. I believe
3des/SHA1 had the quickest reconnect times.

--
Christian Hergert <christian.hergert@xxxxxxxxxxxxx>
Medsphere Systems Corporation

On Tue, 2005-07-19 at 12:53 -0400, Chris de Vidal wrote:
> I want to cluster two XenLinux machines at two sites and join them to
> appear to be one intranet using a VPN daemon.  Thus it would make my LAN
> appear to have more hosts directly attached to it when they are really
> miles away:
> 10.0.0.2 web1.xen1.example.com <-- XenLinux machine 1 at Site 1
> 10.0.0.3 mail1.xen1.example.com <-- XenLinux machine 1 at Site 1
> 10.0.0.4 web2.xen2.example.com <-- XenLinux machine 2 at Site 2
> 10.0.0.5 mail2.xen2.example.com <-- XenLinux machine 2 at Site 2
> ...
> 
> Can I run the VPN daemon inside a guest domain?
> 
> Or should I run it on domain0?
> 
> Or do I need to run it externally?
> 
> CD
> 
> _______________________________________________
> Xen-users mailing list
> Xen-users@xxxxxxxxxxxxxxxxxxx
> http://lists.xensource.com/xen-users

Attachment: signature.asc
Description: This is a digitally signed message part

_______________________________________________
Xen-users mailing list
Xen-users@xxxxxxxxxxxxxxxxxxx
http://lists.xensource.com/xen-users
<Prev in Thread] Current Thread [Next in Thread>