From owner-freebsd-security Tue Sep 7 12:42:41 1999 Delivered-To: freebsd-security@freebsd.org Received: from charlotte.geac.com (charlotte.geac.com [208.144.226.130]) by hub.freebsd.org (Postfix) with SMTP id 05E1114CF5 for ; Tue, 7 Sep 1999 12:42:38 -0700 (PDT) (envelope-from n.spence@geac.com) Received: (qmail 138 invoked from network); 7 Sep 1999 19:38:33 -0000 Received: from aramis.geac.com (HELO b21bis.clsi.us.geac.com) (208.144.226.1) by charlotte.geac.com with SMTP; 7 Sep 1999 19:38:33 -0000 Received: (qmail 15105 invoked from network); 7 Sep 1999 19:38:26 -0000 Received: from exchange.eci.us.geac.com (HELO ilpostino.eci.us.geac.com) (192.168.70.13) by b21bis.us.geac.com with SMTP; 7 Sep 1999 19:38:26 -0000 Received: by exchange.eci.us.geac.com with Internet Mail Service (5.5.1960.3) id ; Tue, 7 Sep 1999 12:41:02 -0700 Message-ID: <85D42D7EE2DAD2119CD400A0C9E1004F64F69A@exchange.eci.us.geac.com> From: =?utf-8?B?Tmlrb2xhdXMgU3BlbmNl?= To: =?utf-8?B?J2RtcEBhcmFjbmV0LmNvbSc=?= Cc: freebsd-security@freebsd.org Subject: =?utf-8?B?UkU6IExheWVyIDIgZXRoZXJuZXQgZW5jcnlwdGlvbj8=?= Date: Tue, 7 Sep 1999 12:41:01 -0700 MIME-Version: 1.0 X-Mailer: Internet Mail Service (5.5.1960.3) Content-Type: text/plain; charset="utf-8" Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org If you aren't using IP based routing then aren't your packets going to be encapsulated already? how ARE you routing your packets??? Nikolaus -----Original Message----- From: dmp@aracnet.com [mailto:dmp@aracnet.com] Sent: Monday, September 06, 1999 11:06 PM To: Gary Palmer Cc: freebsd-security@freebsd.org Subject: Re: Layer 2 ethernet encryption? Gary Palmer wrote: > > dmp@aracnet.com wrote in message ID > <37D496A5.A0576E0F@aracnet.com>: > > Is it possible to encrypt ethernet packets so that all layers above > > layer 2 would be encrypted? The idea I had was to make a device that > > could defeat a TCP sniffer by encrypting the IP headers. Is this > > doable? Viable? A reinvention of the wheel? > > How would you route the traffic? No routers would be able to pass the > traffic. The network in question doesn't use IP-based routing. > If you are doing this for a local LAN, I suggest you have bigger > problems :) You're right, I do have bigger problems. Like deep paranoia among the users of the LAN. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message