Subject: Re: Tunneling - how?
To: Laine Stump <lainestump@rcn.com>
From: Jason R Thorpe <thorpej@zembu.com>
List: netbsd-users
Date: 07/15/2000 00:04:15
On Sat, Jul 15, 2000 at 01:56:41AM -0400, Laine Stump wrote:
> I'm curious why you decided on this instead of tunnel mode IPSec (not that
> I have a different opinion, I don't have *any* opinion, because I've never
> looked at gif, except a quick read of the man page just now).
The topology we're using was really unsuitable for IPsec tunnel mode,
at least as it is implemented in the KAME stack -- there is no network
interface for the tunnel endpoint on the NetBSD side ... and I need one
in order to make routing work properly.
--
-- Jason R. Thorpe <thorpej@zembu.com>