[ previous ] [ next ] [ threads ]
 
 From:  "Chris Bagnall" <m0n0wall at minotaur dot cc>
 To:  "'gaelic'" <gaelic at cargal dot org>, <m0n0wall at lists dot m0n0 dot ch>
 Subject:  RE: [m0n0wall] monowall, separate accesspoint and ipsec
 Date:  Wed, 14 Sep 2005 18:14:03 +0100
> wan<->m0n0<->ap<->client
> i only want to allow a client which is authenticated and 
> encrypted with ipsec. is it possible with a monowall? are 
> there any howtos?

On the interface to which your AP is connected, block everything except AH
and ESP traffic. That's about it really.
I did something similar on a wireless subnet with PPTP a few months ago -
seems to work fine.

Regards,

Chris
-- 
C.M. Bagnall, Director, Minotaur I.T. Limited
Tel: (07010) 710715   Mobile: (07811) 332969   Skype: minotaur-uk
ICQ: 13350579   AIM: MinotaurUK   MSN: msn at minotaur dot cc   Y!: Minotaur_Chris
This email is made from 100% recycled electrons