Re: Cipe on 2.6.16.15
Karl Kleinpaste <[email protected]> Sat, 13 May 2006 13:05:29 -0400
| Newsgroups | gmane.comp.encryption.cipe |
|---|---|
| Message-ID | <[email protected]> |
Peter van den Heuvel <[email protected]> writes: > Cipe is well geared for > equal-role server-to-server networks in a mesh configuration where you > would typically use routing protocols like iBGP, OSPF or > IS-IS. OpenVpn seems to work quite well where you want to connect > clients to a server. > I find it impossible (at this stage) to replace cipe with anything. Considering that I replaced my first CIPE peering configuration with OpenVPN in less than an hour (once I finally got around to experiment- ing with it), I can't agree with you. The addressing, gateways, static key management, and other details are in effect identical; only the config file syntax is different. There is no reason why anything that used to involve "cipcb0" cannot now use "tun0". And I no longer have to deal with separating configuration details from things like CIPE's ip-up script -- it's all in the one configuration file, including gateway setting and so forth. I have yet to deploy OpenVPN in a server-with-many-clients environment, simply because I haven't needed it. But for peering configurations, it is network-equivalent to CIPE. -- Message sent by the [email protected] mailing list. Unsubscribe: mail [email protected], "unsubscribe cipe-l" in body Other commands available with "help" in body to the same address. CIPE info and list archive: <URL:http://sites.inka.de/~bigred/devel/cipe.html>