netdev.vger.kernel.org archive mirror
 help / color / mirror / Atom feed
* ipsec without interface
@ 2003-05-29 19:16 Andreas Jellinghaus
  2003-07-01 12:58 ` bert hubert
  0 siblings, 1 reply; 4+ messages in thread
From: Andreas Jellinghaus @ 2003-05-29 19:16 UTC (permalink / raw)
  To: netdev@oss.sgi.com

sure, the simple configurations work fine with kernel 2.5.* ipsec.
But I miss the interface and things I did with it. How are these
setups supposed to work without an interface?

a) in iptables allow everything coming from ipsec0,
   allow only ssh and ipsec on eth0.

b) source address selection. put the default route on ipsec0,
but the route to the tunnel endpoint on eth0 with the right gateway.

also I wonder why I see incoming packets before and after encryption,
but outgoing packets only before encryption.

Andreas

^ permalink raw reply	[flat|nested] 4+ messages in thread

end of thread, other threads:[~2003-07-01 14:00 UTC | newest]

Thread overview: 4+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-05-29 19:16 ipsec without interface Andreas Jellinghaus
2003-07-01 12:58 ` bert hubert
2003-07-01 13:33   ` Andreas Jellinghaus
2003-07-01 14:00     ` James Morris

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).