avatar
[转载] need help on IPsec# Security - 系统安全
s*r
1
【 以下文字转载自 Unix 讨论区,原文如下 】
发信人: screwdriver (screwdriver), 信区: Unix
标 题: need help on IPsec
发信站: The unknown SPACE (Thu Feb 20 10:55:45 2003) WWW-POST
have a proj need to use IPsec to do Host to Host communication across the
firewall. I know this is similar to SSH, which I have a little experience,
other than that, I have no clue about, for example, how to set it up on the
two unix boxes.
UNIX A: on company intranet behind the firewall
UNIX B: in DMZ
what are the steps to make them talk through
avatar
p*s
2

^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
Actually they are not similar except using some similar cryptographic
algorithms.
IPsec is at network layer and you need to mangle with kernels.
SSH is at application layer and there is not much system-related issues.
IPsec has a built-in filter and network address translation modules,
you don't need another firewall if you have an IPsec implementation
installed on your host.
You may try FreeS/WAN on two Linux boxes. The documention has
a tutorial you

【在 s*********r 的大作中提到】
: 【 以下文字转载自 Unix 讨论区,原文如下 】
: 发信人: screwdriver (screwdriver), 信区: Unix
: 标 题: need help on IPsec
: 发信站: The unknown SPACE (Thu Feb 20 10:55:45 2003) WWW-POST
: have a proj need to use IPsec to do Host to Host communication across the
: firewall. I know this is similar to SSH, which I have a little experience,
: other than that, I have no clue about, for example, how to set it up on the
: two unix boxes.
: UNIX A: on company intranet behind the firewall
: UNIX B: in DMZ

相关阅读
logo
联系我们隐私协议©2024 redian.news
Redian新闻
Redian.news刊载任何文章,不代表同意其说法或描述,仅为提供更多信息,也不构成任何建议。文章信息的合法性及真实性由其作者负责,与Redian.news及其运营公司无关。欢迎投稿,如发现稿件侵权,或作者不愿在本网发表文章,请版权拥有者通知本网处理。