From owner-freebsd-net@FreeBSD.ORG Wed Jan 14 19:45:37 2004 Return-Path: Delivered-To: freebsd-net@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id C1C4616A4CE for ; Wed, 14 Jan 2004 19:45:37 -0800 (PST) Received: from ns1.unixmexico.net (ns1.unixmexico.net [69.10.138.161]) by mx1.FreeBSD.org (Postfix) with ESMTP id 5042943D6A for ; Wed, 14 Jan 2004 19:45:36 -0800 (PST) (envelope-from nbari@unixmexico.com) Received: (qmail 80296 invoked by uid 85); 15 Jan 2004 03:49:59 -0000 Received: from nbari@unixmexico.com by ns1.unixmexico.net by uid 82 with qmail-scanner-1.16 (hbedv: 6.22.0.1/6.22.0.6. Clear:. Processed in 0.26498 secs); 15 Jan 2004 03:49:59 -0000 Received: from ns1.unixmexico.net (HELO mail.unixmexico.com) ([69.10.138.161]) (envelope-sender ) by ns1.unixmexico.net (qmail-ldap-1.03) with SMTP for ; 15 Jan 2004 03:49:58 -0000 Received: from 148.243.211.1 (SquirrelMail authenticated user nbari@unixmexico.com) by mail.unixmexico.com with HTTP; Wed, 14 Jan 2004 21:49:58 -0600 (CST) Message-ID: <23621.148.243.211.1.1074138598.squirrel@mail.unixmexico.com> Date: Wed, 14 Jan 2004 21:49:58 -0600 (CST) From: =?iso-8859-1?Q?Nicol=E1s_de_Bari_Embr=EDz_G._R.?= To: freebsd-net@freebsd.org User-Agent: SquirrelMail/1.4.1 MIME-Version: 1.0 Content-Type: text/plain;charset=iso-8859-1 Content-Transfer-Encoding: 8bit X-Priority: 3 Importance: Normal Subject: Secure MSN and ICQ chat X-BeenThere: freebsd-net@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: Networking and TCP/IP with FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Thu, 15 Jan 2004 03:45:37 -0000 Hello all. I want to secure the network traffic of the users on my LAN, I want to secure the MSN and ICQ data so people on the building can't use a sniffer and watch the conversations. I have something like this: Internet Internet ^ ^ | | router ( sniffer in here ) | | | | | | | FBSD server <------ VPN/IPSEC ------> FBSD server on a secure network | | Swith/hub | | ----- | LAN | ----- Right now i have an tunnel with IPSEC to another FreeBSD Server the one is on a secure network and on a different building, what i was thinking to do, was to install a proxy on the Secure FreeBSD server and configure the MSN/ICQ clients to use that proxy so only that traffic could go out using the secure network. I would like to know if there is a better option for securing this communications, or if this idea is fine and what proxy software do you recommend to install for doing this. regards -- nbari@unixmexico.com key ID 1EF56FDC