LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 04-02-2015, 01:42 PM   #1
oulevon
Member
 
Registered: Feb 2001
Location: Boston, USA
Distribution: Slackware
Posts: 438

Rep: Reputation: 30
IPSec Uses


Hello,

I realize that IPSec can be used with VPNs, but is it commonly used for anything else by default? Everything I've searched for thus far has described VPNs and the use of IPSec. Thanks for your help.
 
Old 04-03-2015, 07:37 AM   #2
rtmistler
Moderator
 
Registered: Mar 2011
Location: USA
Distribution: MINT Debian, Angstrom, SUSE, Ubuntu, Debian
Posts: 9,882
Blog Entries: 13

Rep: Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930Reputation: 4930
Many years ago there were PPTP and L2TP as well as other types of tunneling/VPN protocols. IPSec was envisioned to be a protection for those protocols, and is. But they also realized that IPSec could just be expanded and used to provide the VPN services from within itself. And for a couple of reasons, you could either encrypt the payload and leave the VPN headers alone, or encrypt all of the data and use IPSec packets to establish your VPN. I forget the pros and cons, they are real arguments, but to me it also boils down to choices as to what form of protection you'd prefer. In one form, people can sniff your traffic and know what two endpoints are talking, but not be able to easily view the payload due to encryption. In the other form, the identities of the endpoints are protected because it has been abstracted via the protocol. I believe that to be the difference. Either case the most common use has been for VPNs. I just don't think the concept caught on of using it point to point solely for encryption. The concept has mainly been for an outsider getting into the network and validating their credentials as being someone who does belong in that network. Otherwise if you're internally connected to the network, then you are already authenticated, so no need.
 
Old 04-03-2015, 03:44 PM   #3
sundialsvcs
LQ Guru
 
Registered: Feb 2004
Location: SE Tennessee, USA
Distribution: Gentoo, LFS
Posts: 10,659
Blog Entries: 4

Rep: Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941Reputation: 3941
"IPSec" is the underlying technology of "VPNs" . . .
 
Old 04-04-2015, 10:54 AM   #4
oulevon
Member
 
Registered: Feb 2001
Location: Boston, USA
Distribution: Slackware
Posts: 438

Original Poster
Rep: Reputation: 30
Thank you both for your responses.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
openswan - include statement in ipsec.conf & ipsec.secrets readmore Linux - Security 0 10-16-2014 07:44 AM
vpn-ipsec : Failed to parse config setup portion of ipsec.conf hari85 Linux - Newbie 1 07-17-2010 08:12 PM
IPSec eagle683 Linux - Security 5 06-10-2005 10:53 AM
IPsec cranium2004 Linux - Security 5 05-01-2005 08:21 PM
Ipsec MarleyGPN Linux - Networking 1 07-15-2003 08:18 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 03:01 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration