openbsd-misc
[Top] [All Lists]

Re: Alternatives for IPSec?

To: misc@openbsd.org
Subject: Re: Alternatives for IPSec?
From: Ryan McBride <mcbride@countersiege.com>
Date: Fri, 1 Feb 2002 08:10:24 -0500
In-reply-to: <000001c1ab1b$28c6d2f0$6a00020a@heppu>
References: <000001c1ab1b$28c6d2f0$6a00020a@heppu>
Reply-to: Ryan McBride <mcbride@countersiege.com>
Sender: owner-misc@openbsd.org
User-agent: Mutt/1.3.25i
On Fri, Feb 01, 2002 at 02:22:17PM +0200, Jyri Hovila wrote:
> I'm having a problem with one ISP who does not allow customers to use
> ESP protocol. Are there any alternatives to IPSec for creating VPN
> tunnels between two OpenBSD 3.0 gateways?

Have a look at vtun in the ports tree, which allows tunneling over a
variety of links. You can use it by itself or run a IPSec VPN over the
tunnel. I've even been known to run IPSec over vtun over httptunnel
when really stuck. 

If you really want to get inventive, there are tools to tunnel over
icmp, smtp, dns, etc. 

-Ryan

-- 
Ryan T. McBride, CISSP - mcbride@countersiege.com
Countersiege Systems Corporation - http://www.countersiege.com
PGP key fingerprint = 645D 30F3 6A3A A4FD 2B95  3EF3 10AD D8C8 834B 6CEE

<Prev in Thread] Current Thread [Next in Thread>