Subject: Re: Tunneling - how?
To: Jukka Marin <jmarin@pyy.jmp.fi>
From: Steven M. Bellovin <smb@research.att.com>
List: netbsd-users
Date: 07/14/2000 09:51:51
In message <20000714121734.A14922@pyy.jmp.fi>, Jukka Marin writes:
>Dear List,
>
>I would like to try tunneling IP packets over an encrypted link (that is,
>I would like the tunneling system do the encryption for me).  I will need
>to tunnel a subnet from one location to another, but right now I'd like
>to test how things work using a wireless LAN as the tunnel and route my
>local subnet (or one IP of it) through the tunnel.
>
>There seem to be several devices for tunneling in NetBSD 1.5.  Which one
>do I want to use?  tun, gre, ipip, gif, what? :-)
>
>Please help me to get started.

What you want is tunnel-mode IPsec -- encrypted tunnels are precisely 
what it is designed to do.

		--Steve Bellovin