Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 21 Jan 2001 17:38:08 -0800
From:      "Crist J. Clark" <cjclark@reflexnet.net>
To:        "Cambria, Mike" <mcambria@avaya.com>
Cc:        The Babbler <bts@babbleon.org>, freebsd-ipfw@FreeBSD.ORG
Subject:   Re: IPSEC tunnelling
Message-ID:  <20010121173807.B10761@rfx-216-196-73-168.users.reflex>
In-Reply-To: <3A6D367EA1EFD4118C9B00A0C9DD99D7064AE8@rerun.lucentctc.com>; from mcambria@avaya.com on Sun, Jan 21, 2001 at 07:35:40PM -0500
References:  <3A6D367EA1EFD4118C9B00A0C9DD99D7064AE8@rerun.lucentctc.com>

next in thread | previous in thread | raw e-mail | index | archive | help

On Sun, Jan 21, 2001 at 07:35:40PM -0500, Cambria, Mike wrote:
> 
> FYI -- I'm doing it now.  If you can read this it works with the following
> high level setup:
> 
> I'm using IPSec tunnel mode, with ESP, but no authentication.  I'm also not
> using AH.

Tunnel mode is troublesome to mix with NAT. AH is impossible to run
through NAT.
-- 
Crist J. Clark                           cjclark@alum.mit.edu


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-ipfw" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20010121173807.B10761>