Re: [Users] options field in inner ip header

From: Ken Bantoft (ken_at_freeswan.ca)
Date: Tue Oct 29 2002 - 21:44:19 CET


According to this post from RGB:

http://www.sandelman.ottawa.on.ca/linux-ipsec/html/1999/03/msg00404.html

"It always has copied ToS from the inner. It certainly could leak
some information. Section 5.1.2.1 of RFC2401 specifically states that
TOS is to be copied from the inner header."

On Tue, 29 Oct 2002, George Hadjichristofi wrote:

> Hi,
>
> I want to use the Options field in the IP header of a packet. However, I
> am
> wondering whether an IPSec tunnel will "hide" the options field. Is the
> inner IP header's options field copied to the outer's in the current
> implementation of freeswan ipsec?
>
> If not, will it be complicated to implement that?
>
> Also, can the options field be added/modified on the outer IP header of
> a
> packet after it enters the IPSec tunnel?
>
>
> Thank you
> George
>
> *************************************************
> George C. Hadjichristofi
> Graduate Student,Computer Engineering Department
> Virginia Tech,Blacksburg,VA 24061,U.S.A
> TEL:(540)-951-8936 FAX:(775)-361-1201
> *************************************************
>
>
> _______________________________________________
> Users mailing list
> Users_at_lists.freeswan.org
> http://lists.freeswan.org/mailman/listinfo/users
>

-- 
Ken Bantoft                The Unoffical FreeS/WAN Site:
ken_at_freeswan.ca            http://www.freeswan.ca
                           PGP Key: finger ken_at_bantoft.org
"We can factor the number 15 with quantum computers. We 
can also factor the number 15 with a dog trained to bark 
three times."       -- Robert Harley, 5/12/01, Sci.crypt
_______________________________________________
Users mailing list
Users_at_lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users


This archive was generated by hypermail 2.1.5 : Wed Oct 30 2002 - 05:20:34 CET