tech-net archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: NetBSD IP security in practice



> The other issue is that I am not clear on if there is adequate support
> dynamic-remote-peer VPN (road warrior type, vs site-site), which often
> involves provisioning a private/internal address for the remote host to
> use inside a tunnel.
I thought that was exactly the point the L2TP-over-IPsec-Matroshka was good 
for: you can't use tunnel mode when you don't have a local IP to tunnel.
Or is there a more intelligent way than 
PPP-over-L2TP-over-UDP-over-IPsec-over-IP-over-whatever?


Home | Main Index | Thread Index | Old Index