Re: Bypassing ssh for ipsec transport flows

2011-02-13 Thread G Douglas Davidson
On Feb 8, 2011, at 10:20 AM, G Douglas Davidson wrote: > I'm attempting to exclude ssh traffic from host to host IPSec transport > traffic. And not having much success on the OpenBSD side (OpenBSD to > Racoon.) > > Here's what ipsec.conf looks like: > > --- ipsec.conf --- > flow esp proto tcp fr

Bypassing ssh for ipsec transport flows

2011-02-08 Thread G Douglas Davidson
I'm attempting to exclude ssh traffic from host to host IPSec transport traffic. And not having much success on the OpenBSD side (OpenBSD to Racoon.) Here's what ipsec.conf looks like: --- ipsec.conf --- flow esp proto tcp from any to any port 22 type bypass ike esp transport from 10.222.0.