Re: [Swan] Opportunistic encryption with IPSec transport mode

2018-01-19 Thread Colony.three
Well this was what I meant with my idea of a SuperLAN. But there was no connection to opportunistic encryption, nor attempt to clear up my questions and misconceptions. I've made no progress. The barriers are too high for those of us who are busy with many other things. Original Mess

Re: [Swan] Opportunistic encryption with IPSec transport mode

2018-01-18 Thread Paul Wouters
On Fri, 19 Jan 2018, Kenneth Jackson wrote: Suppose I have a set of hosts and I want to leverage Paul’s opportunistic encryption pattern, but I would prefer to use IPSec transport mode (type=transport) instead of tunnel mode so that my IP headers are unaltered. 1. Will the pattern still work

[Swan] Opportunistic encryption with IPSec transport mode

2018-01-18 Thread Kenneth Jackson
Suppose I have a set of hosts and I want to leverage Paul’s opportunistic encryption pattern, but I would prefer to use IPSec transport mode (type=transport) instead of tunnel mode so that my IP