[Openswan Users] ipsec and iptables

Andy fs at globalnetit.com
Wed Jan 25 22:28:12 CET 2006


On Thu, 2006-01-26 at 04:25 +0100, Paul Wouters wrote:
> On Wed, 25 Jan 2006, Ruben CL wrote:
> 
> > Hi all!I would like to use both ipsec and iptables for my vpn. I would like the traffic between my networks were encryp
> > ted only for mail and web. All the other traffic it would be plaintext.
> > Can anyone help me? Thanks
> 
> It is easier and better to encrypt everything.
> if you really dont want that, you can use leftprotoport=5/25 for email
> and leftprotoport=5/80 for web. (and the same for rightprotoport.

Shouldn't that be 6/25 & 6/80 - TCP is protocol 6, right?

If he uses that approach, won't all other traffic get dropped?


> 
> But again, you should encrpt everything
> 
> Paul
> -- 
> 
> "Happiness is never grand"
> 
> 	--- Mustapha Mond, World Controller (Brave New World)
> _______________________________________________ Users mailing list Users at openswan.org http://lists.openswan.org/mailman/listinfo/users
-- 
Andy <fs at globalnetit.com>



More information about the Users mailing list