> -----Original Message-----
> From: Tom Greaser [mailto:[EMAIL PROTECTED] 
> Sent: Tuesday, 18 March 2003 01:03
> To: [EMAIL PROTECTED]
> Subject: Re: [Ntop] Log IPSEC
> 
> 
> IPsec usally runs over UDP 500
> 
> 
Not quite...ISAKMP key exchange uses UDP port 500, but that's only part of
it.

IPSEC ESP Tunnel mode uses IP Protocol type 50, (NOT TCP or UDP port 50); AH
mode uses IP Protocol 51.

Some IPSec implementations let you encapsulate IPSec in UDP, like
Checkpoint's Securemote VPN client which can use UDP 2743 to make getting
around NAT easier.

Rob

-- 
The information contained in this e-mail message is intended only for the use of the 
person or entity to whom it is addressed and may contain information that is 
CONFIDENTIAL and may be exempt from disclosure under applicable laws. 

If you read this message and are not the addressee you are notified that use, 
dissemination, distribution, or reproduction of this message is prohibited. If you 
have received this message in error, please notify us immediately and delete the 
original message. You should scan this message and any attached files for viruses. 

Axon accepts no liability for any loss caused either directly or indirectly by a virus 
arising from the use of this message or any attached file.
_______________________________________________
Ntop mailing list
[EMAIL PROTECTED]
http://listgateway.unipi.it/mailman/listinfo/ntop

Reply via email to