tech-net archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]
Re: NetBSD IP security in practice
> The other issue is that I am not clear on if there is adequate support
> dynamic-remote-peer VPN (road warrior type, vs site-site), which often
> involves provisioning a private/internal address for the remote host to
> use inside a tunnel.
I thought that was exactly the point the L2TP-over-IPsec-Matroshka was good
for: you can't use tunnel mode when you don't have a local IP to tunnel.
Or is there a more intelligent way than
PPP-over-L2TP-over-UDP-over-IPsec-over-IP-over-whatever?
Home |
Main Index |
Thread Index |
Old Index