Gentoo Archives: gentoo-user

From: Nick Khamis <symack@×××××.com>
To: gentoo-user <gentoo-user@l.g.o>
Subject: [gentoo-user] Traffic Intensive IPSec Tunnel
Date: Sat, 11 May 2013 19:13:40
Message-Id: CAGWRaZbsYZPGRmj+rkPrVfUnZwaWtDEGMu39ijJTQGmh=WJujQ@mail.gmail.com
1 Hello Everyone,
2
3 Our service provider requires all connections between us be done
4 through IPSec IKE. From the little bit of research, I found that this
5 is achieved using a system with IPSec kernel modules enabled, along
6 with cryptography modules. On the application level, I saw ipsec tool,
7 OpenSWAN, and OpenVPN.
8
9 What I was wondering is which should be used for traffic intensive
10 connections in a deployment environment. Without starting any OpenVPN
11 vs OpenSwan debate, we would really like to keep the application level
12 to a minimum. Meaning if we could achieve the tunnel using the
13 required kernel modules, ipsec-tools and iptables, we see that as
14 keeping it simple and effective.
15
16 Your insight, suggested how-to pages are greatly appreciated.
17
18 Thanks in Advance,
19
20 Nick.

Replies

Subject Author
Re: [gentoo-user] Traffic Intensive IPSec Tunnel Michael Mol <mikemol@×××××.com>