IPSec VPNs: to gif or not to gif

Bill Swingle unfurl at dub.net
Sun Oct 26 08:52:23 PST 2003


On Thu, Oct 23, 2003 at 06:23:03AM -0500, G. Panula wrote:
> Current behavior is encrypted packet is handled by ipfw once, then after 
> decryption it is only handled by ipfw(again) if it passes thru an 
> interface didn't arrive on.

Does this apply to ipfilter as well?

-Bill

-- 
-=| Bill Swingle - <unfurl@(dub.net|freebsd.org)>
-=| Every message PGP signed
-=| PGP Fingerprint: C1E3 49D1 EFC9 3EE0 EA6E  6414 5200 1C95 8E09 0223
-=| "Computers are useless. They can only give you answers" Pablo Picasso 



-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 187 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-security/attachments/20031026/f34b7a77/attachment.bin


More information about the freebsd-security mailing list