@SteveBellovin I still use old-Sun-internal test+productivity tool #punchin where my HDC's router zone hosts it.
You might not know this, but I left Oracle not because of the closing of OpenSolaris ('cause I naively believed they were gonna do the Darwin thing per the leaked internal email), but because some jackass personally demonstrated to #Solaris Team #IPsec that Oracle culture values business relationships more than its own fucking technology.
"Let's use SSL/VPN instead..." :swearing:
@hkrn same with #L2TP & #IPsec, not just #OpenVPN and #WireGuard.
What does however still work through the #IronFirewall is #SSH-Tunneling and @torproject #TorBridges.
#WhatsMissing are more #meek, #webtunnel & #snowflake as well as #obfs4 #Bridges.
#bridges #obfs4 #Snowflake #webtunnel #meek #whatsmissing #torbridges #ssh #ironfirewall #WireGuard #openvpn #ipsec #L2TP
@Deiru @drq +9001%
#SSH-Tunneling is nifty and easier as well as faster to setup than #WireGuard, #OpenVPN and espechally #IPsec as well as #L2TP.
https://mstdn.social/@kkarhan/110858391993998314
#L2TP #ipsec #openvpn #WireGuard #ssh
Completed Cilium Transparent Encryption with IPSec and WireGuard lab and got a new badge from Isovalent!
https://www.credly.com/badges/d8cdaae7-b307-48c5-bad6-021f8980b603/public_url
✅ Installing Cilium and setting up IPsec for transparent encryption
✅ Managing Day 2 operations with IPsec on Cilium
✅ Setting up pod to pod transparent encryption using Cilium WireGuard
✅ Setting up node to node transparent encryption using Cilium WireGuard
#cilium #ipsec #wireguard #isovalent
#cilium #ipsec #wireguard #isovalent
#opnsense ist pünktlich in Version 23.7 erschienen. Die Integration von #openvpn und #ipsec wurde grundlegend neu entwickelt und dazu gibt es einiges zu beachten. Mehr dazu ist in meinem Blogartikel zu finden.
https://www.purrucker.de/2023/07/31/opnsense-23-7-neues-openvpn-und-ipsec/
@apangona also check out about the Server...
Maybe those were just keepalive & padding packets and those didn't get omnitted by the Server?
Would be kinda bad but not uncommon on other protocols like #PPTP, #L2TP, #IPsec & #OpenVPN...
I'd also not be surprised if said server and/or VPN config do some sort of MSS clamping or affix MTU to a few select options for efficient use of Ports and/or bandwith to MUX clients together...
Also #WireGuard will lilely try to kesp latency low.
#WireGuard #openvpn #ipsec #L2TP #PPTP
Damn, that means you'll constantly need an Fn key or otherwise have #macros...
My tech stack is mostly hampered by being forced to use what distros have packaged and/or isn't seen as a security risk.
Otherwise I would've already moved to #fish + #neovim and would use #WireGuard & #SSH-Tunnels instead of #OpenVPN or god forbid #IPsec...
Cuz socioeconomic need to have wagework or at least the payment of it is doing that.
#ipsec #openvpn #ssh #WireGuard #neovim #fish #macros
Problem with L2TP IPSec VPN from ubuntu 22.04 #networking #vpn #ipsec #l2tp
Question for those who have #Synology in their #HomeLab and connect to it via #IPSec using #Linux: would you be able to share your configs? It does not matter if #StrongSwan or #LibreSwan, I just want something that works reliably. Thanks in advance.
#libreswan #synology #homelab #ipsec #linux #strongswan
I found today this interesting overview how Anna's Archive works: https://annas-blog.org/how-to-run-a-shadow-library.html
I wonder if IPSec would be a better solution to communicate between freedom-loving layer and cheap layer, than wireguard or ssh?
#ipsec #annasarchive #shadowlibraries
@Graycot Whitelisting connections is a good idea, especially if through something like #IPSec or #Wireguard you ensure that source IPs cannot be spoofed.
And yes, credentials should ideally be stored outside the code as others have mentioned here.
Securing Your Network with Cisco Umbrella Tunnels with Palo Alto Prisma SDWAN
#Cisco #PaloAltoNetworks #Umbrella #Prismasdwan #sdwan #ipsec #tunnel #DNS #networking #networks #ccna #ccnp #ccie #networkengineers
https://www.thenetworkdna.com/2023/02/securing-your-network-with-cisco.html
#cisco #paloaltonetworks #Umbrella #prismasdwan #sdwan #ipsec #tunnel #dns #networking #networks #ccna #ccnp #ccie #networkengineers
Mike Ounsworth from Entrust
will give an overview of
@ietf
progress at integrating Post-Quantum Cryptography into common Internet #protocols at the #PQC Conference of the
@pkic
Registration: https://lnkd.in/ecYSd9cN
Agenda and more info: https://lnkd.in/eQx7STfA
#security #postquantumcryptography #pki #pqc #ssh #ipsec #tls #ssl #dnssec #dane #saml #imaps #pops #smtps #webdav #vpn #irc #xmpp
#protocols #pqc #security #postquantumcryptography #pki #ssh #ipsec #tls #ssl #dnssec #dane #saml #imaps #pops #smtps #webdav #vpn #irc #xmpp
Anyone have experience with using IPsec IKEv2 VPN on Mac OS?
A colleague of mine experiences issues with her connectivity from a MacBook to a Lancom Router. Her connection drops every three minutes or so, very annoying.
Other machines connecting to the same VPN don't have this problem (two linux laptops, and a Windows 10 laptop)
Please boost for visibility, thanks!
Site-to-Site VPN tunnel from AWS to remote onprem DC using Transit Gateway
#AWS #site2site #VPN #IPSEC #tunnel #security #networking #networks #networksbaseline #networkengineers #cloud #cloudengineers #tunnels #infrastructure #technology #informationtechnology #internetinfrastructure
https://www.thenetworkdna.com/2022/01/site-to-site-vpn-tunnel-from-aws-to.html
#aws #site2site #vpn #ipsec #tunnel #security #networking #networks #networksbaseline #networkengineers #Cloud #cloudengineers #tunnels #infrastructure #technology #informationtechnology #internetinfrastructure