Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 26 Oct 2007 16:55:08 +0700
From:      Victor Sudakov <sudakov@sibptus.tomsk.ru>
To:        User Questions <freebsd-questions@freebsd.org>
Subject:   IPSec SPD
Message-ID:  <20071026095508.GA60816@admin.sibptus.tomsk.ru>

next in thread | raw e-mail | index | archive | help
Colleagues, 

Suppose our remote office uses the 10.1.1.0/24 network, and the whole
company uses the 10.0.0.0/8 network.

How do we set up the SPD entries to encrypt traffic to the
headquarters and back?

spdadd 10.0.0.0/8 10.1.1.0/24
...
spdadd 10.1.1.0/24 10.0.0.0/8
...

is not a good idea, is it? 

Thanks in advance for any input.

-- 
Victor Sudakov,  VAS4-RIPE, VAS47-RIPN
sip:sudakov@sibptus.tomsk.ru



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20071026095508.GA60816>