Re: IPSEC documentation
- From: Brian Candler <B.Candler@xxxxxxxxx>
- Date: Wed, 28 Dec 2005 15:55:45 +0000
On Wed, Dec 28, 2005 at 04:26:43PM +0100, Eric Masson wrote:
> gif/gre tunnels and ipsec transport mode are quite convenient when
> associated with dynamic routing protocols.
OK, I'll buy gif + IPSEC transport mode as an option. [Although in that
case, perhaps what you want is an external IPSEC tunnel mode implementation
which attaches to a 'tun' device. That's yet another category which I hadn't
even considered]
I still think that gif + IPSEC tunnel mode (as currently documented) is not
a good approach, especially if it's the *only* mode of operation to be
documented and hence implicitly recommended as the 'right' way to do it.
_______________________________________________
freebsd-net@xxxxxxxxxxx mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-net
To unsubscribe, send any mail to "freebsd-net-unsubscribe@xxxxxxxxxxx"
- Follow-Ups:
- Re: IPSEC documentation
- From: Eric Masson
- Re: IPSEC documentation
- From: Julian Elischer
- Re: IPSEC documentation
- From: Eric Masson
- Re: IPSEC documentation
- References:
- IPSEC documentation
- From: Brian Candler
- Re: IPSEC documentation
- From: Eric Masson
- IPSEC documentation
- Prev by Date: Re: IPSEC documentation
- Next by Date: 5.4 / 6.0 wi0 and dhcp with closed network
- Previous by thread: Re: IPSEC documentation
- Next by thread: Re: IPSEC documentation
- Index(es):