[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: comments on VPN framework document



On Mon, 12 Oct 1998, Stephen Waters wrote:
> With IPSEC, there is no mechanism to define an 'Virtual IP interface' that
> can be managed as any other IP interface - routing/cost/filtering/.... 
> Perhaps this is just the way that I (and others) have implemented it...

Indeed so.  In fact, the Linux FreeS/WAN implementation of IPSEC currently
*does* use a virtual IP interface... and it causes enough headaches that
we're going to do something different as soon as the evolution of the
Linux kernel permits... 

                                                          Henry Spencer
                                                       henry@spsystems.net
                                                     (henry@zoo.toronto.edu)



References: