Encrypt some services with ipsec

carlopmart_at_gmail.com
Date: 09/24/05

  • Next message: suporte_at_wahtec.com.br: "Re: mounting filesystems with "noexec""
    Date: Sat, 24 Sep 2005 20:09:36 +0200
    To: freebsd-security <freebsd-security@freebsd.org>
    
    

    Hi all,

      I have two prodction servers with FreeBSD 5.4 (all security patches
    are applied). They running some services like dns, ssh, http, ftp, etc.
    But I woukd like to encrypt some services for some hosts with ipsec when
    it is accessed. For example:

      - DNS resolution: not encrypted.
      - DNS replication master-slave: encrypted by ipsec.
      - Telnet: encrypted by ipsec for some hosts. Deny for the rest.
      - SSH: not encrypted for some hosts, encryted by ipsec for the rest.
      - FTP: encrypted by ipsec.
      - HTTP: encrypted by ipsec.

      is it possible to encrypt only certains services under ipsec tunnel??

    Thank you for your help.

    -- 
    CL Martinez
    carlopmart {at} gmail {d0t} com
    _______________________________________________
    freebsd-security@freebsd.org mailing list
    http://lists.freebsd.org/mailman/listinfo/freebsd-security
    To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
    

  • Next message: suporte_at_wahtec.com.br: "Re: mounting filesystems with "noexec""

    Relevant Pages

    • Re: [OpenVMS, DECnet] How to do DECnet over - secure (ssh, ssl) - IP ? IP ? IP ?
      ... It is the Unix style of solving problems. ... sticky tape and paperclip way of software design. ... I assume it will be possible to encrypt DECnet over IP ... > with IPsec, but alas we have to wait just a little bit longer before ...
      (comp.os.vms)
    • Multiple Gateway IPSEC Problem
      ... Cisco Router: Gateway Interface: 10.0.1.2 ... spdadd 91.18.78.0/27 91.18.78.32/27 any -P in ipsec ... # Encrypt and direct all other traffic ...
      (freebsd-net)
    • RE: username and Password sent as clear text strings
      ... ipsec communication to only encrypt traffic to this particular ... What does everyone think of implementing a IPSEC solution to resolve the ... SSL was designed for client application-to-server application ... I completed a security review of a web server, ...
      (Pen-Test)
    • Problem - Using IPSec to secure Windows Messenger Traffic
      ... We have problems with encrypting Windows Messenger traffic with Windows ... First of all did anybody succeed to encrypt this traffic? ... IPSec policy, I give it below: ... Communication occurs between clients and server through ports: ...
      (Focus-Microsoft)
    • Encrypt some services with ipsec
      ... They running some services like dns, ssh, http, ftp, etc. ... - DNS replication master-slave: encrypted by ipsec. ... is it possible to encrypt only certains services under ipsec tunnel?? ...
      (freebsd-stable)