On 18 November 2011 16:20, Vic <lug@???> wrote:
>
>> ESP packets .. those are the ones that know what data you want before
>> you ask for it.
>
> ESP is part of why IPSec is so damned horrible - it's IP, but it's
> protocol 50 (Note: *protocol*, not port).
>
Yes, but there is a "NAT traversal" option with IPSEC where they put
the encrypted payload in UDP packets.
That method is much more likely to get through.
--
Please post to: Hampshire@???
Web Interface:
https://mailman.lug.org.uk/mailman/listinfo/hampshire
LUG URL:
http://www.hantslug.org.uk
--------------------------------------------------------------