[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: ESP over UDP
You've got it backwards -- UDP runs over ESP, not the
other way around. Although you are correct in saying that
ISAKMP runs over UDP. That is true.
The problem is that you are using IP Masquerade. You will have
trouble with IPSec across a NAT. There are a couple of patches
that exist for Linux to try to get IPSec working across the NAT:
ftp://ftp.rubyriver.com/pub/jhardin/masquerade/ip_masq_vpn.html
-derek
Joern Sierwald <joern.sierwald@datafellows.com> writes:
>
> Is there a well-known port that I could use to run esp over udp?
> ISAKMP runs fine over IP maskerading, but ESP does not.
>
> J=F6rn
>
--
Derek Atkins, SB '93 MIT EE, SM '95 MIT Media Laboratory
Member, MIT Student Information Processing Board (SIPB)
URL: http://web.mit.edu/warlord/ PP-ASEL N1NWH
warlord@MIT.EDU PGP key available
Follow-Ups:
References:
- ESP over UDP
- From: Joern Sierwald <joern.sierwald@datafellows.com>