It would be a pfSense<->pfSense ESP - IPSec tunnel.

I was also wonder if you could even shape everything out of the Lan port
regardless of destination (wan,ipsec,dmz).

Thanks
John

-----Original Message-----
From: Dan Swartzendruber [mailto:[EMAIL PROTECTED] 
Sent: Thursday, December 08, 2005 12:27 AM
To: [email protected]
Subject: Re: [pfSense Support] Traffic Shaper / IPSec

At 11:29 PM 12/7/2005, you wrote:
>IPSEC cannot be shaped (yet).

yes and no.  ESP/AH, no, but if you're doing nat-traversal, that's 
encapsulated in UDP packets, so that would work, no?

>Scott
>
>On 12/7/05, John Cianfarani <[EMAIL PROTECTED]> wrote:
> >
> >
> >
> > If you build the traffic shaping rules for lan->wan will it treat
traffic
> > destined to an IPsec tunnel as a part of that? Essentially I'm just
looking
> > to give priority to VoIP traffic anything else would be below 
> that.  Even if
> > it could be done on the LAN interface regardless of destination.






---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]


---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to