IPv6 readyNote: This archive passes through spamassassin. Every mail marked with the subject "*****SPAM*****" has exceed a certain threshold of spam-like behaviour.

[Users] portforwarding and freeswan

From: Ad Koster (lidad_at_zeelandnet.nl)
Date: Wed Mar 13 2002 - 19:16:35 CET


I do have some questions about firewalling regarding freeswan.

-------------firewall-1
   ---- DMZ
-------------firewall-2
   ---- LAN

What is in this case, the best solution to place the FreeSwan-server,
firewall-1 or firewall-2. In my opinion firewall-2. In this case
connections to the freeswan-server from the outside world should be
forwarded using (d)nat (iptables). Or is portforwarding of the
ipsec-protocol problematic??.

Thanks

Ad Koster
lidad_at_zeelandnet.nl

_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users



This archive was generated by hypermail 2.1.3 : Mon Jul 29 2002 - 05:19:42 CEST