RE: Gif IPTunnel networkA-to-networkB not work

From: Oldach, Helge (Helge.Oldach_at_atosorigin.com)
Date: 08/27/03

  • Next message: Clark Gaylord: "RE: subnetting C class into /26 /25 /26, why can this be done?"
    To: "'Lars Eggert'" <larse@ISI.EDU>
    Date: Wed, 27 Aug 2003 22:56:05 +0200
    
    

    > From: Lars Eggert [mailto:larse@ISI.EDU]
    > Sent: Mittwoch, 27. August 2003 17:45
    > To: Oldach, Helge
    > Cc: hilman firmansyah; freebsd-net@freebsd.org
    > Subject: Re: Gif IPTunnel networkA-to-networkB not work
    > Oldach, Helge wrote:
    > > You must have the networks connected (on the public side), but when
    > > using IPSec your gif tunnel won't really be used. It is just sort of
    > > a "placeholder" to get the routing correct.
    >
    > It is not a good idea to use gifs in parallel with IPsec tunnel mode.,
    > to do this routing trick.

    Fully agreed. The point is that a lot of documents on the web advise
    to set up a gif tunnel in order to set up a IPSec tunnel. Which
    is essentially nonsense. Apparently the original poster fell into the
    same trap. Hence my clarification.

    Helge
    _______________________________________________
    freebsd-net@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-net
    To unsubscribe, send any mail to "freebsd-net-unsubscribe@freebsd.org"


  • Next message: Clark Gaylord: "RE: subnetting C class into /26 /25 /26, why can this be done?"

    Relevant Pages

    • Re: IPSEC with PF - Please help.
      ... In terms of PF firewall work with IPSEC, do I still need to enable ... Anything that you route through the GIF tunnel, ... Mike Tancsa, Sentex communications http://www.sentex.net ... Providing Internet Access since 1994 ...
      (comp.unix.bsd.freebsd.misc)
    • Re: DF (Dont frag) issues
      ... > setup with the gif tunnel (but no IPSec) and it works just fine for me. ... ipf/ipfw/pf and VPNs - to date I have used iptables and ...
      (freebsd-current)
    • more on IPSec + gif stalling
      ... I've done another test on the IPSec + gif issue. ... Set up IPSec rules for both machines, created a gif tunnel between both ... IPSec + gif - firewall = just works ...
      (freebsd-net)
    • RE: Gif IPTunnel networkA-to-networkB not work
      ... >,since in the fbsd ... > handbooks said to make an encrypted section i must have the 2 networks ... IPSec your gif tunnel won't really be used. ...
      (freebsd-net)