LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 03-17-2004, 11:40 PM   #1
Rims
LQ Newbie
 
Registered: Mar 2004
Posts: 6

Rep: Reputation: 0
Is VPN encryption always really necessary?


I've recently struggled with setting up Poptop to establish encrypted mschap and/or mschap-v2 vpn connections with Windows XP. I did the whole mppe patch to my kernel and everything to allow for the encryption on the linux box. If anyone can suggest why WinXP keeps giving my the 'Error: 800 VPN connection cannot be established' when I try to connect with encryption, let me know please. There are no network problems here, I am able to connect successfully without encryption.

So back to the point of this thread, I was wondering if encryption is really necessary in this case. I plan on just using this vpn server box to access my home network from school. There isn't any "ultra sensitive corporate data" on my home network, so therefore I don't really see the point of encryption in the first place. I've already spent a lot of time patching my kernel and it's become frustrating enough to the point where I'm loosing motivation to make encryption work if it really isn't needed. Am I just asking for trouble without encryption on such a simple vpn implementation? I don't really know where to go from here.

-Rims
 
Old 03-18-2004, 12:05 AM   #2
AutOPSY
Member
 
Registered: Mar 2004
Location: US
Distribution: Redhat 9 - Linux 2.6.3
Posts: 836

Rep: Reputation: 31
Like Shakespear once said: To be or not to be that is the question.

I quess, from what you posted,
"I was wondering if encryption is really necessary in this case. I plan on just using this vpn server box to access my home network from school. There isn't any "ultra sensitive corporate data" on my home network, so therefore I don't really see the point of encryption in the first place. I've already spent a lot of time patching my kernel and it's become frustrating enough to"

you decide if encryption is neccessary.

if you understand the concept of encryption, then youd know why youd use it.
 
Old 03-18-2004, 01:15 AM   #3
benjithegreat98
Senior Member
 
Registered: Dec 2003
Location: Shelbyville, TN, USA
Distribution: Fedora Core, CentOS
Posts: 1,019

Rep: Reputation: 45
Whether or not you want to use encryption is totally up to you. What are you doing between the 2 computers? Is it something others shouldn't see? Are plain text passwords floating in plain text that people could see (like ftp, pop, imap, telnet, etc,etc)? Like the guy above said, It's your decision.

You can use some secure protocols for what you are doing. That would help. Use ssh over telnet and stuff like that. Or you could keep at it. Everytime I have trouble like that it is just a mundane detail or typo or transposed field or something stupid like that.
 
Old 03-18-2004, 04:42 PM   #4
Rims
LQ Newbie
 
Registered: Mar 2004
Posts: 6

Original Poster
Rep: Reputation: 0
Yeah, well I pretty much just want to use the home gateway instead of the school gateway. This will allow me to run servers and avoid any filtering and or bandwidth discrimination. That was really the whole point of me doing this.
As for ssh, I was going to use it at first, but then realized that the tunneling implementation it uses is very limited in terms of having to emulate a proxy server. I did not want to have to depend on proxy settings for all my outgoing net apps. I am a lot happier with the result of full network traffic forwarding regardless of whether or not a given program supports proxy configurations.
Therefore, I guess I am able to answer my own freakin' question because the "data" that will be passing through this vpn connection will be the same "data" that I've always been spewing out through my school network anyways. Hah, so there ya go, I'm content without encryption.

-Rims
 
Old 03-18-2004, 06:28 PM   #5
Rims
LQ Newbie
 
Registered: Mar 2004
Posts: 6

Original Poster
Rep: Reputation: 0
Cool

I actually got the MS Chaps v2 with 128 encryption to finally work! Yay, the stupid options.pptpd file needs "mschap" instead of "chapms", as referenced incorrectly on the Poptop documentation! Go Figure! Anyways, i'm really happy because it took me a very long time to patch my kernel since I originally had the minimal box install from red hat installer without any source/devel rpms.
I'd like to ask if enabling compression would be a good idea and how to do it if anyone knows. (Poptop's documentation is a little incomplete) Does it affect transfer speed that much? I also am running all this on a good ol' 100 Mhz p-1 system, so I don't want to enable compression if it will eat away at my processor resources. Let me know what's up.

-Rims
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
VPN: linux VPN server behind Linksys router hamish Linux - Networking 14 08-25-2005 08:42 PM
Encryption on VPN via Windows XP home NetAX Linux - Networking 2 11-07-2004 02:56 PM
How do i connect Ciscos VPN client to Checkpoint VPN server Klas Linux - Networking 1 11-29-2003 08:00 AM
Can't connect VPN server with encryption kelper Linux - Software 2 11-25-2003 07:42 AM
Mandrake 9.0 Wireless Works without encryption.. does not with encryption topcat Linux - Wireless Networking 3 05-04-2003 08:47 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 12:05 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration