"Mairhtin O'Feannag" <(E-Mail Removed)> wrote in message
news:Xns944CAF0FDF6Cmairhtinofeannag@64.164.98.51. ..
> This seems to be asked many times, and never answered quite sufficiently.
>
> We would like to offer our clients an all-in-one firewall/VPN box using
> IPTables and Free S/Wan. The only trouble we have is finding a client
> for the windows platform. Our Symantec client software requires username
> and password (shared secret) and I'm not certain I know how to accomplish
> that with Free S/Wan. I'm reading up on it, but am a bit dubious.
>
> People have mentioned SSH Sentinel before, but I don't seem to be able to
> find a copy of the old version - at least not with a license. I have an
> old version, but it requires a license I don't have. 
>
> Any assistance in this regard would be appreciated.
Investigate PoPToP and the Linux PPTP client. Both interoperate well with
Windows, and are not fundamentally more or less secure than the IPSec based
mess that I find in a lot of other VPN tools.
Now, *WHY* both sets of VPN creators think it's a good idea for the client
to keep their keys in plain-text on a local file, and in matching plain-text
on the server, is why I'd like to take them all out and slap them with
bricks repeatedly. I don't *CARE* how long your damn key or password is: if
you keep it in plaiin text on both client and server, it *will* be stolen.