Re: IKE, Xauth and NAT-T

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



David S. Miller wrote:
On 17 Aug 2003 22:58:58 -0700
"H. Peter Anvin" <hpa@zytor.com> wrote:
By the way... what IKE is the one that people are actually using?
ipsec-tools or (Super)FreeSWAN (pluto)?

I know this isn't the answer you want, but based upon reports I've seen personally the userbase is roughly split right down the middle.
>

I'm just trying to figure out where things are headed. It's obviously undesirable to retain that situation indefinitely. The few times I've looked at FreeS/WAN I've always thought it was a total mess to configure, and ipsec-tools seems to be simpler, but I guess it's not feature-complete enough (NAT-T missing, for one.)

My main reason for delving into this is selfish: I'm sick of having to taint the kernel on my laptop due to inserting a proprietary Crisco module, which of course means I'm stuck at 2.4.x. For that, I need working NAT-T and XAuth. XAuth seems simple enough, but the Pluto codebase scares me a bit.

-hpa

-
: send the line "unsubscribe linux-net" in
the body of a message to majordomo@vger.kernel.org
More majordomo info at  http://vger.kernel.org/majordomo-info.html

[Index of Archives]     [Netdev]     [Ethernet Bridging]     [Linux 802.1Q VLAN]     [Linux Wireless]     [Kernel Newbies]     [Security]     [Linux for Hams]     [Netfilter]     [Git]     [Bugtraq]     [Yosemite News and Information]     [MIPS Linux]     [ARM Linux]     [Linux RAID]     [Linux PCI]     [Linux Admin]     [Samba]

  Powered by Linux