[63863] in North American Network Operators' Group
Re: Block all servers?
daemon@ATHENA.MIT.EDU (ken emery)
Sat Oct 11 17:11:53 2003
Date: Sat, 11 Oct 2003 14:11:09 -0700 (PDT)
From: ken emery <ken@cnet.com>
To: nanog@merit.edu
In-Reply-To: <20031011174122.4F5217B43@berkshire.research.att.com>
Errors-To: owner-nanog-outgoing@merit.edu
On Sat, 11 Oct 2003, Steven M. Bellovin wrote:
> In message <Pine.LNX.4.44.0310110741350.20543-100000@s1.yuriev.com>, Alex Yurie
> v writes:
> >
> >> Also what about folks who need to VPN in to their office
> >> (either via PPTP or IPSEC)? How would you take care of that
> >> situation?
> >
> >IPSEC works over NATs just fine.
> >
> Not in the general case, no. See draft-aboba-nat-ipsec-04.txt if you
> can find a copy.
This internet draft is available at:
http://quimby.gnus.org/internet-drafts/draft-aboba-nat-ipsec-04.txt
I can't figure out if anything happened with this draft (I'm guessing
nothing went on). The draft expired on December 1, 2001.
bye,
ken emery