  1. ipsec based vpn

    I install and configure strongswan but network packets not going from host, plase help. ipsec.conf conn %default left=%any leftauth=pubkey leftcert=rb-ipsec-server-60.pem leftsubnet= right=%any rightauth=pubkey rightsourceip= conn ikev2 keyexchange=ikev2 auto=add Other configs are default. # eix strongswan [I] net-vpn/strongswan [1] Available versions: 5.5.3 (~)5.6.0 5.6.0-r1 (~)5.6.2 {+caps +constraints curl debug dhcp eap farp gcrypt +gmp ldap mysql networkmanager +non-root +openssl pam pkcs11 selinux sqlite strongswan_plugins_blowfish strongswan_plugins_ccm strongswan_plugins_ctr strongswan_plugins_gcm strongswan_plugins_ha strongswan_plugins_ipseckey +strongswan_plugins_led +strongswan_plugins_lookip strongswan_plugins_ntru strongswan_plugins_padlock strongswan_plugins_rdrand +strongswan_plugins_systime-fix strongswan_plugins_unbound +strongswan_plugins_unity +strongswan_plugins_vici strongswan_plugins_whitelist} Installed versions: 5.6.2(04:27:39 PM 05/15/2018)(caps constraints gmp non-root openssl pam strongswan_plugins_led strongswan_plugins_lookip strongswan_plugins_systime-fix strongswan_plugins_unity strongswan_plugins_vici -curl -debug -dhcp -eap -farp -gcrypt -ldap -mysql -networkmanager -pkcs11 -selinux -sqlite -strongswan_plugins_blowfish -strongswan_plugins_ccm -strongswan_plugins_ctr -strongswan_plugins_gcm -strongswan_plugins_ha -strongswan_plugins_ipseckey -strongswan_plugins_ntru -strongswan_plugins_padlock -strongswan_plugins_rdrand -strongswan_plugins_unbound -strongswan_plugins_whitelist) Homepage: http://www.strongswan.org/ Description: IPsec-based VPN solution focused on security and ease of use, supporting IKEv1/IKEv2 and MOBIKE # sysctl -a | grep net.ipv4.ip_forward net.ipv4.ip_forward = 1 Traceroute from android client # traceroute 1: hostip 2: * ... 3: *
  2. Samba ADDC

    I have many issues with samba-4.8.x, but samba-4.7.7 works good.
  3. Virtualize Funtoo over Funtoo

    Samba is for example. I need to run 2 instances of complex application with different configuration. And Host should have priority for performance and can you all 100% of host processor resources if needed. I need Samba POSIX ACLs file sharing but it is supported only on Domain Controller Members. So I need run Samba AD Domain Controller in virtual "container", and Samba on host to share files.
  4. Virtualize Funtoo over Funtoo

    I need to run Funtoo over Funtoo host. I need dynamically share performance between them. What is the preferred method for this? I want to run samba as ADDC in virtual machine and samba on host as Domain Member with file sharing feature.
  5. I try to setup ip for server using /etc/conf.d/net.eth0 template="interface" ipaddr=" 2a03:xxxx:xxxx:xxxx::6/64" gateway="" gateway6="2a03:xxxx:xxxx:xxxx::" but interface acquire 3 ipv6 addresses # ifconfig eth0 eth0: flags=4163<UP,BROADCAST,RUNNING,MULTICAST> mtu 1500 inet netmask broadcast inet6 2a03:xxxx:xxxx:xxxx:aaaa:aaaa:aaaa:aaaa prefixlen 64 scopeid 0x0<global> inet6 2a03:xxxx:xxxx:xxxx::6 prefixlen 64 scopeid 0x0<global> inet6 fe80::aaaa:aaaa:aaaa:aaaa prefixlen 64 scopeid 0x20<link> ether aa:aa:aa:aa:aa:aa txqueuelen 1000 (Ethernet) RX packets 3448832 bytes 2497999401 (2.3 GiB) RX errors 0 dropped 222 overruns 0 frame 0 TX packets 4594668 bytes 5355598657 (4.9 GiB) TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0 how can I exclude "2a03:xxxx:xxxx:xxxx:aaaa:aaaa:aaaa:aaaa"? PS: neighbor discovery is enable on router and cannot be disabled because needed by other pc.
  6. Samba ADDC

    I just install samba as ADDC not real tests, but tests from install page all successfull. I add this to /etc/portage/package.use net-fs/samba acl addc addns ads gnutls winbind # required by net-fs/samba-4.8.1::net-kit[addns] # required by samba (argument) >=net-dns/bind-tools-9.11.2_p1 gssapi my /etc/resolv.conf is (I replace domain, nameserver is point to localhost) # Generated by resolvconf domain samdom.example.com nameserver I use network configuration from this link https://www.funtoo.org/Networking#Server_Network_Configuration, /etc/resolv.conf is generated after reboot but equal.
  7. ipsec based vpn

    Funtoo Containers are Containers so possible have some restrictions for this. IPsec configuration not trivial so it is better to know what software are compatible.
  8. ipsec based vpn

    What is the prefered software for building ipsec based vpn inside funtoo container? With ikev2 and certificate based auth. PS: move pls to Funtoo Hosting forum.
  9. ANSWERED Reboot Container

    Today reboot is work without issues.
  10. ANSWERED Reboot Container

    How to reboot container? reboot or shutdown has no effect
  11. Activate media-kit master kit

  12. Activate media-kit master kit

    I need a package that actual version exist only in media-kit master branch. Prime branches has very very old versions. How can i activate needed for me master branch?
  13. lightdm and kde

    The answer is simple - use lightdm-gtk-greeter instead of absent in meta repo lightdm-kde-greeter or kde-lightdm packages. I think it can help but I can't check it. Is anyone use Kde Plasma? Is current version work on Funtoo? PS: For me migrating to meta-repo is a pain. Random packages disapear or reverted to old version or not working.
  14. lightdm and kde

    I use lightdm with kde but after migrating to meta-repo lightdm-kde-greeter disapear. Can I continue to use lightdm somehow?
  15. Can't emerge gparted

    I migrate to gcc-5 long time ago and have no issues since that. I rebuild dev-cpp/glibmm and dev-cpp/gtkmm and after this gparted build without issues. Thank you.