Re: OT: IPSec Transport vs Tunnel modes (Was: VPN recommendations?)

2022-02-16 Thread Crist Clark
It's not like IPsec protocols (it's a suite of protocols and concepts, not one) are proprietary or something. There are pretty ASCII pictures in RFCs with all about how the packets are put together. See section 3 of RFC 4303 to see how ESP transport and tunnel mode datagrams are put together. For

Re: OT: IPSec Transport vs Tunnel modes (Was: VPN recommendations?)

2022-02-15 Thread Grant Taylor via NANOG
Hi Bill, On 2/12/22 8:55 PM, William Herrin wrote: It's tunnel mode plus a tunneling protocol plus some implicit routing and firewalling which gets in the way of dynamic routing. I assume you meant to say that it's /transport/ mode plus a tunneling protocol. I wonder if you are thinking mor