Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

VPN for Openserver

0 views
Skip to first unread message

Fernando Ronci

unread,
Nov 21, 2002, 5:36:39 AM11/21/02
to
Hi,

Are there any VPN server packages that will run on OSR5?
I've done a google search on "vpn for SCO" but it seems such a product
didn't exist as of 2001 (the date of the postings) By that time a
hardware solution seemed the way to go.
The FAQ at http://www.pcunix.com/SCOFAQ/scotec0.html doesn't cover
VPN. Nor do the TA's at http://stage.caldera.com/ta
Only http://www.pcunix.com/Basics/vpn.html deals with VPN's, but no
specific product for SCO is mentioned.
MSPPP does vpn on PPP links. I need it on a frame relay WAN.
Does this situation remain the same today or has a third party company
developed a VPN solution for us SCO users?

Thank you,

Fernando Ronci
E-mail: fernan...@hotmail.com

Tony Lawrence

unread,
Nov 21, 2002, 6:36:42 AM11/21/02
to

There's Poptop, but I don't kniow if it has been ported to SCO.

I generally don't like a production server providing this kind of
function. I have a number of clients doing anything from ssh to tpoptop
to hardware vpns, but I always run that on a separate machine (or
dedicated vpn appliance) and let them access the sco from there.

For example, if ssh access is enough, I don't let them come directly to
sco- they ssh to some other box (usually a Linux system) and then from
there gain access to sco, either transparently or through another login
(depending upon how many levels of challenge we feel we need).

Or if it's a VPN with poptop, again I'd run that on a separate Linux box
both for the additional isolation and because it's just easier to
obtain, configure, and maintain this sort of thing on Linux.

Even with hardware VPN's (point to point) I've sometimes isolated that
so the VPN only gives access to part of the network and you need to pass
more hurdles to go on.


But in no situation do I think you should ever have direct outside
access to a production server.


--

Please note new phone number: (781) 784-7547

Tony Lawrence
Unix/Linux Support Tips, How-To's, Tests and more: http://aplawrence.com
Free Unix/Linux Consultants list: http://aplawrence.com/consultants.html

Mike Brown

unread,
Nov 21, 2002, 9:42:10 AM11/21/02
to

I do not think there is one yet, but it was added to the wish list for
Openserver at the forum BOF. I think one of the packages that may need
to be incorporated into the kernel or network stack is IPsec, which
was described as a nontrivial task.

Mike

--
Michael Brown

The Kingsway Group

Fernando Ronci

unread,
Nov 22, 2002, 5:54:27 AM11/22/02
to
Tony Lawrence <to...@pcunix.com> wrote in message news:<arigga$bai$1...@pcls4.std.com>...

> Fernando Ronci wrote:
> > Hi,
> >
> > Are there any VPN server packages that will run on OSR5?
> > I've done a google search on "vpn for SCO" but it seems such a product
> > didn't exist as of 2001 (the date of the postings) By that time a
> > hardware solution seemed the way to go.
> > The FAQ at http://www.pcunix.com/SCOFAQ/scotec0.html doesn't cover
> > VPN. Nor do the TA's at http://stage.caldera.com/ta
> > Only http://www.pcunix.com/Basics/vpn.html deals with VPN's, but no
> > specific product for SCO is mentioned.
> > MSPPP does vpn on PPP links. I need it on a frame relay WAN.
> > Does this situation remain the same today or has a third party company
> > developed a VPN solution for us SCO users?
>
> There's Poptop, but I don't kniow if it has been ported to SCO.
No, unfortunately not.

>
> I generally don't like a production server providing this kind of
> function. I have a number of clients doing anything from ssh to tpoptop
> to hardware vpns, but I always run that on a separate machine (or
> dedicated vpn appliance) and let them access the sco from there.
>
> For example, if ssh access is enough, I don't let them come directly to
> sco- they ssh to some other box (usually a Linux system) and then from
> there gain access to sco, either transparently or through another login
> (depending upon how many levels of challenge we feel we need).

If I set up Tarantella on another box to serve the applications on the
internal LAN to a branch office that has a 128 Kbps. frame relay pipe
to the internet, I will eliminate the need for a VPN and benefit from
all security measures (SSL)Tarantella implements, won't I?


Thanks,

Fernando

Lars Hviid

unread,
Nov 22, 2002, 9:10:01 AM11/22/02
to
Hi

I really cannot recommend that you install a VPN in your SCO instead
you ought to buy a small hw box client to client vpn ( cost < 3-400
$)or client to server vpn( < 1000 $)

considuring security this would be the best solution

Lars


Mike Brown <mi...@tkg.ca> wrote in message news:<3DDCF0C1...@tkg.ca>...

-bill-

unread,
Nov 23, 2002, 10:57:14 AM11/23/02
to

I recently needed to put in a hardware firewall and, by chance, picked
up a Netgear FVS318, which coincidently provides VPN. I liked the box
so much after having installed it (a non-trivial task, but the support
is good) that I put in a pair, one at the office and one at my home.
Now I can tunnel into my office machine with some degree of security and
that is very convenient.

Doug Luurs

unread,
Nov 27, 2002, 9:32:34 AM11/27/02
to
We personally run a Sonicwall Firewall/VPN Combo.
Was never able to find a Package to run on SCO.

Works like a dream, and easy to configure.

Doug Luurs
Borisch Mfg Corp

---------
On 21 Nov 2002 02:36:39 -0800, fernan...@hotmail.com (Fernando

Freddy

unread,
Dec 7, 2002, 5:07:15 PM12/7/02
to
"Fernando Ronci" <fernan...@hotmail.com> wrote in message
news:d4e3407b.0211...@posting.google.com...

And I like the Netopia R910 which provides PPTP and IPSEC VPN end-point
support for less that $300..... an amazing deal and a much more reliable box
than the Netgear/Linksys SOHO toys out there..... and been around a long
time...... IMHO...

Fred....


Lucky Leavell

unread,
Dec 8, 2002, 9:29:30 PM12/8/02
to Fernando Ronci, comp.unix.sco.misc
Well, I don't know of any software VPNs for OSR5 (or UW7 either) but I
have been using a MultiTech RF550VPN for about a month and really like
it. At $US 179 it is hard to beat even though I am just using it as a
firewall as I have no WAN. (It has a dialup backup feature which is ALL I
have!) It supports up to 5 IPsec tunnels and using it with OSR5 and UW7 on
the LAN only required changing the default route to point to the
RF550VPN's LAN-side IP address. The only other interface with the Unix
boxes was to map the ports from which I wanted to accept inbound traffic
from the outside to the server and port which was to handle it. (It even
can log all rejects to one of the Unix boxes using syslog.)

Thank you,
Lucky

Lucky Leavell Phone: (800) 481-2393 (US/Canada)
UniXpress - Your Source for SCO OR: (812) 366-4066
1560 Zoar Church Road NE FAX: (812) 366-3618
Corydon, IN 47112-7374 Email: lu...@UniXpress.com
WWW Home Page: http://www.UniXpress.com

Jukka Inkeri

unread,
Dec 9, 2002, 2:16:29 PM12/9/02
to

> Are there any VPN server packages that will run on OSR5?
Look Firewall+VPN box D-Link DI-804V, cost little over 100$ and works fine.

-jukka-
# my email ? try next cmd
echo "jukka_xnkerx:1wot_biz" | tr "_:x1" ".@ia"

0 new messages