Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 3 Apr 2006 06:55:06 -0400
From:      Bill Moran <wmoran@collaborativefusion.com>
To:        nospam@mgedv.net
Cc:        freebsd-questions@freebsd.org
Subject:   Re: hunting for secure fileserver-connection!
Message-ID:  <20060403065506.2e078e35.wmoran@collaborativefusion.com>
In-Reply-To: <00b101c65709$7cd342e0$0a86a8c0@avalon.lan>
References:  <44303AE1.4040404@mac.com> <00b101c65709$7cd342e0$0a86a8c0@avalon.lan>

next in thread | previous in thread | raw e-mail | index | archive | help
"No@SPAM@mgEDV.net" <nospam@mgedv.net> wrote:

> 
> > If you don't trust CIFS/Samba enough to be secure against local sniffers,
> and
> > you won't run IPsec, you're left with odd things like Sun's SecureNFS
> software,
> > only I doubt that's available for a FreeBSD fileserver.
> that's what i was afraid of. ipsec would be great, if it was possible to
> have it
> setup itself against the server each time you login (maybe windows logon)
> but theres
> always a client software needed, and in most cases, you're not able to
> access other
> networks smoothly if connected.

I've never actually used it, but IPsec in transport mode should be
capable of what you want, and should not have the negative side effects
you describe.

At least that's the way it's designed.  It might be implemented poorly on
Windows, I don't know.

-- 
Bill Moran
Potential Technologies
http://www.potentialtech.com



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20060403065506.2e078e35.wmoran>