On Fri, 2004-01-16 at 12:29, Matthew Hall wrote: > Try openswan [http://www.openswan.org/]; it's a more 'open' version of > freeswan, based on the old super-freeswan code. I can't say for sure > whether it will fix the problem (as it is based on freeswan code, but I > believe the openswan people are more 'open' (heh) to bugfixing and > feature inclusion). Great info, thanks Matt. I've joined the Openswan list and hope to have an answer soon. I'll summarize my experience for all the other paranoid IPSec road-warriors. :) -- Jason Dixon, RHCE DixonGroup Consulting http://www.dixongroup.net