RE: Gif IPTunnel networkA-to-networkB not work
From: Oldach, Helge (Helge.Oldach_at_atosorigin.com)
Date: 08/27/03
- Previous message: hilman firmansyah: "Gif IPTunnel networkA-to-networkB not work"
- Maybe in reply to: hilman firmansyah: "Gif IPTunnel networkA-to-networkB not work"
- Next in thread: Lars Eggert: "Re: Gif IPTunnel networkA-to-networkB not work"
- Reply: Lars Eggert: "Re: Gif IPTunnel networkA-to-networkB not work"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
To: hilman firmansyah <hilman@nap.net.id>, freebsd-net@freebsd.org Date: Wed, 27 Aug 2003 08:40:27 +0200
> From: hilman firmansyah [mailto:hilman@nap.net.id]
> NB : I still dont touch the IPSEC and encrypted section
> ,since in the fbsd
> handbooks said to make an encrypted section i must have the 2 networks
> connected. Is this right?
You must have the networks connected (on the public side), but when using
IPSec your gif tunnel won't really be used. It is just sort of a
"placeholder"
to get the routing correct. I am using a similar setup to your's (FreeBSD
talking IPSec with a Cisco router) using the GIF tunnel pointing to a bogus
remote address. You could essentialy achieve the same without GIF using
static ARP entries, claiming that the MAC address of your machine's default
gateway has the tunnel destination IP.
Helge
_______________________________________________
freebsd-net@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-net
To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"
- Previous message: hilman firmansyah: "Gif IPTunnel networkA-to-networkB not work"
- Maybe in reply to: hilman firmansyah: "Gif IPTunnel networkA-to-networkB not work"
- Next in thread: Lars Eggert: "Re: Gif IPTunnel networkA-to-networkB not work"
- Reply: Lars Eggert: "Re: Gif IPTunnel networkA-to-networkB not work"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
Relevant Pages
|
|