Re: IPsec/L2TP and AES

From: S. Pidgorny (slavickp_at_yahoo.com)
Date: 10/24/03


Date: Fri, 24 Oct 2003 18:41:50 +1000

Herb,

Let's make it clear - I never contradicted myself.

You said: "SSH has it." (AES encryption)
I replied: "SSH protocols are not functional equivalent of IPsec"
You: "Depends on what you mean by 'functionally equivalent'. SSH is
sometimes used for the same purpose as a VPN -- to tunnel or transport other
protocols."
I: "SSH only allows TCP tunneling"

Probably I'd have to elaborate on support of UDP, ICMP and other IP
protocols but TCP, and no need for individual configuration for every port,
as well as possibility to route client-to-LAN and LAN-to-LAN traffic - areas
where SSH lacks badly.

-- 
Svyatoslav Pidgorny, MVP, MCSE
-= F1 is the key =-
"Herb Martin" <news@LearnQuick.com> wrote in message
news:uPjp8bXmDHA.2676@TK2MSFTNGP11.phx.gbl...
> > No, SSH only allows TCP tunneling, and tunnel for each TCP port needs to
> be
> > established separately.
>
> I indicated it sometimes is used to transport other protocols -- which is
> what you
> have both disagreed with and confirmed above.
>
> -- 
> Herb Martin
> "S. Pidgorny <MVP>" <slavickp@yahoo.com> wrote in message
> news:eoRimMWmDHA.684@TK2MSFTNGP09.phx.gbl...
> > No, SSH only allows TCP tunneling, and tunnel for each TCP port needs to
> be
> > established separately.
> >
> > However, I'd support idea of Microsoft adding SSH support to Windows.
> >
> > -- 
> > Svyatoslav Pidgorny, MVP, MCSE
> > -= F1 is the key =-
> >
> > "Herb Martin" <news@LearnQuick.com> wrote in message
> > news:OYcMDrKmDHA.2416@TK2MSFTNGP10.phx.gbl...
> > >
> > > SSH is sometimes used for the same purpose as a VPN -- to tunnel
> > > or transport other protocols.
> > >
> > > Microsoft could do worse than add SSH support to Windows.
> > >
> > >
> > > -- 
> > > Herb Martin
> > >
> > >
> >
> >
>
>


Relevant Pages

  • Re: Does OpenSSH use RCP?
    ... SSH has the concept of subsystems. ... those subsystems are protocols in higher layers for SSH. ... If you agree with me, that FTP is ugly, why do you argue? ... Leidenschaft fehlt, das wirklich Wichtige lernt man dabei nicht, und die ...
    (comp.security.unix)
  • Re: IPsec/L2TP and AES
    ... "SSH protocols are not functional equivalent of IPsec" ... >> No, SSH only allows TCP tunneling, and tunnel for each TCP port needs to ... I'd support idea of Microsoft adding SSH support to Windows. ...
    (microsoft.public.security)
  • Re: IPsec/L2TP and AES
    ... "SSH protocols are not functional equivalent of IPsec" ... >> No, SSH only allows TCP tunneling, and tunnel for each TCP port needs to ... I'd support idea of Microsoft adding SSH support to Windows. ...
    (microsoft.public.win2000.security)
  • Re: Mapped SCP Drive on windows
    ... > SSH does not support running other protocols such as SMB over it, ... >, or if all you want is to transfer files back ... use CVS over SSH or rsync over SSH. ... I'm talking not about running other protocols, ...
    (comp.security.ssh)
  • Cant Access SSH Server TCPIP-F-SSH_FATAL
    ... SSH support, but I'm left trying to get SSH running. ... Message from user INTERnet on UHSAXP ...
    (comp.os.vms)