Is there a way to keep ipsecX naming, use of ipipX for ipsec tunnels seems to 
be confusing for many people...


> On 7 May 2020, at 14:15, Neale Ranns via lists.fd.io 
> <nranns=cisco....@lists.fd.io> wrote:
> 
>
> Hi Chris,
>
> They were replaced by ipip interfaces protected by SAs:
>   https://wiki.fd.io/view/VPP/IPSec#Tunnel_Mode 
> <https://wiki.fd.io/view/VPP/IPSec#Tunnel_Mode>
>
> the tunnel always adds encap. You can configure your SA to add additional 
> encap if you want.
>
> /neale
>
>
> From: <vpp-dev@lists.fd.io <mailto:vpp-dev@lists.fd.io>> on behalf of 
> Christian Hopps <cho...@chopps.org <mailto:cho...@chopps.org>>
> Date: Wednesday 6 May 2020 at 14:32
> To: vpp-dev <vpp-dev@lists.fd.io <mailto:vpp-dev@lists.fd.io>>
> Cc: Christian Hopps <cho...@chopps.org <mailto:cho...@chopps.org>>
> Subject: [vpp-dev] IPsec tunnel interfaces?
>
> Hi, vpp-dev,
> 
> Post 19.08 seems to have removed IPsec logical interfaces.
> 
> One cannot always use transport mode IPsec.
> 
> How can I get the efficiency of route based (FIB) IPsec w/o transport mode? 
> Adding superfluous encapsulations (wasting bandwidth) to replace this 
> (seemingly lost, hope not) functionality is not an option.
> 
> Thanks,
> Chris.
> 

-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#16266): https://lists.fd.io/g/vpp-dev/message/16266
Mute This Topic: https://lists.fd.io/mt/74027328/21656
Group Owner: vpp-dev+ow...@lists.fd.io
Unsubscribe: https://lists.fd.io/g/vpp-dev/unsub  [arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-

Reply via email to