s*********r 发帖数: 22 | 1 【 以下文字转载自 Unix 讨论区,原文如下 】
发信人: screwdriver (screwdriver), 信区: Unix
标 题: need help on IPsec
发信站: The unknown SPACE (Thu Feb 20 10:55:45 2003) WWW-POST
have a proj need to use IPsec to do Host to Host communication across the
firewall. I know this is similar to SSH, which I have a little experience,
other than that, I have no clue about, for example, how to set it up on the
two unix boxes.
UNIX A: on company intranet behind the firewall
UNIX B: in DMZ
what are the steps to make them talk through | p****s 发帖数: 3184 | 2
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
Actually they are not similar except using some similar cryptographic
algorithms.
IPsec is at network layer and you need to mangle with kernels.
SSH is at application layer and there is not much system-related issues.
IPsec has a built-in filter and network address translation modules,
you don't need another firewall if you have an IPsec implementation
installed on your host.
You may try FreeS/WAN on two Linux boxes. The documention has
a tutorial you
【在 s*********r 的大作中提到】 : 【 以下文字转载自 Unix 讨论区,原文如下 】 : 发信人: screwdriver (screwdriver), 信区: Unix : 标 题: need help on IPsec : 发信站: The unknown SPACE (Thu Feb 20 10:55:45 2003) WWW-POST : have a proj need to use IPsec to do Host to Host communication across the : firewall. I know this is similar to SSH, which I have a little experience, : other than that, I have no clue about, for example, how to set it up on the : two unix boxes. : UNIX A: on company intranet behind the firewall : UNIX B: in DMZ
|
|