FreeS/WAN IPsec for Linux, OCLUG tutorial 2003-01-30, RGB
Next Table of Contents

KLIPS vs. Linux

  • Routing to steer packets in.
  • Eroutes to control them (primitive SPD).
  • SAs to process them.
  • SAID-grouping
  • Firewall interaction (updown)

    KLIPS2 plans:

  • Need to see *all* packets.
  • Interface via firewall, not routing.
  • Routing after encryption.
  • More complete SPD.
  • IPv6 support.

    Title Page


    Last modified by Richard Guy Briggs , Thu Jan 30 14:19:00 EST 2003 .