[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
(usagi-users 02233) Re: IPSec over TCP
- To: usagi-users@xxxxxxxxxxxxxx
- Subject: (usagi-users 02233) Re: IPSec over TCP
- From: Peter Bieringer <pb@xxxxxxxxxxxx>
- Date: Fri, 21 Feb 2003 22:10:27 +0100
- Cc: "BUYCK Jacky FTRD/DMI/CAE" <jacky.buyck@xxxxxxxxxxxxxxxxxxxx>
- Reply-to: usagi-users@xxxxxxxxxxxxxx
--On Tuesday, February 11, 2003 02:39:44 PM +0100 "BUYCK Jacky
FTRD/DMI/CAE" <jacky.buyck@xxxxxxxxxxxxxxxxxxxx> wrote:
> --On Tuesday, February 11, 2003 11:28:57 AM +0100 "BUYCK Jacky
> FTRD/DMI/CAE" <jacky.buyck@xxxxxxxxxxxxxxxxxxxx> wrote:
>
>>> Really ?
>>> Because there is solution that encapsulate IPSec packet in UDP and
>>> in TCP (the CISCO VPN 300 do the two kind of encapsulation).
>>
>> Did you mean that the full ESP payload was encapsulated in UDP or
>> TCP or only IKE over TCP instead of UDP?
>
> First choice. I search after all IKE and ESP encapsulation in TCP.
Only for information: Check Point FW-1 NG FP3 is also able to do "IKE over
TCP".
If you still got no draft from somewhere, trigger me, perhaps I can get
some information from them about this.
Peter
--
Dr. Peter Bieringer http://www.bieringer.de/pb/
GPG/PGP Key 0x958F422D mailto: pb at bieringer dot de
Deep Space 6 Co-Founder and Core Member http://www.deepspace6.net/