lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Fri Sep 16 21:24:29 2005
From: gem at rellim.com (Gary E. Miller)
Subject: PGPNet Upgrade path ?

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Yo Aditya!

On Fri, 16 Sep 2005, Aditya Deshmukh wrote:

> > > What alternatives are there to pgpnet ?
> >
> > Have a look at OpenVPN.
>
> Thanks Martijn, but isn`t that a SSL vpn ? And from what I
> have read about PGPnet I need a IPSEC VPN that uses
> PGP keys to do the auth.

IPSEC has nothing to do with PGP.  Also there is really no such thing
as a PGP key.  PGP uses what ever key scheme you ask it to use.  IPSEC
is the same way.  Both use keys, but are not themselves key standards.

OpenVPN similarly can use what ever key scheme you wish.  Since it is
based on the OpenSSL crupto libs it is very flexible that way.  For
simple setups you can use pre-shared keys.  For more complex setups
you can use public/private key pairs of any type that OpenSSL understands.

On top of that you can layer on other aith schemes like username/passwords
and such.

IMHO, if OpenVPN does not do what you want then you misunderstand the
problem.


RGDS
GARY
- ---------------------------------------------------------------------------
Gary E. Miller Rellim 20340 Empire Blvd, Suite E-3, Bend, OR 97701
	gem@...lim.com  Tel:+1(541)382-8588 Fax: +1(541)382-8676

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)

iD8DBQFDKyni8KZibdeR3qURAv9tAJ9YxZiCL/QUCpM2ciZV2apCuj8MSgCffY1s
qOCCYwH7H5Ts0B2iL525tm4=
=+8Dj
-----END PGP SIGNATURE-----

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ