Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 06 Sep 1999 22:47:12 -0700
From:      dmp@aracnet.com
To:        "Bryan Smith (Administrator)" <bryan@valiant.cis.hcc.cc.il.us>
Cc:        freebsd-security@FreeBSD.ORG
Subject:   Re: Layer 2 ethernet encryption?
Message-ID:  <37D4A6E0.F49A6F87@aracnet.com>
References:  <Pine.LNX.4.10.9909062350020.10516-100000@valiant.cis.hcc.cc.il.us>

next in thread | previous in thread | raw e-mail | index | archive | help
"Bryan Smith (Administrator)" wrote:
> 
> where would you implement this on the system?

A layer 2 bridge between the NIC and the network.

> I just use SSH.

SSH still requires that unencrypted IP headers be used, allowing a
sniffer to see the traffic.

> On Mon, 6 Sep 1999 dmp@aracnet.com wrote:
> 
> > My apologies if this shouldn't be posted to this group, but I didn't
> > know of any other place where an open discussion among "friends"
> > could take place.  If I should take this elsewhere, just let me know.
> >
> > Is it possible to encrypt ethernet packets so that all layers above
> > layer 2 would be encrypted?  The idea I had was to make a device that
> > could defeat a TCP sniffer by encrypting the IP headers.  Is this
> > doable?  Viable?  A reinvention of the wheel?


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?37D4A6E0.F49A6F87>