IPSEC Web References
IPSEC links
This file is part of the documentation for the Linux FreeS/WAN project.
See the documentation index or project
home page for more information.
Sections:
The IPSEC Protocols
IPSEC overview documents or slide sets
IPSEC information in languages other than English
RFCs and other reference documents
-
Our document listing the RFCs relevant to Linux FreeS/WAN
and giving various ways of obtaining both RFCs
and Internet Drafts.
-
IPSEC standards page maintained by VPNC.
This covers both RFCs and Drafts, and classifies them in a fairly helpful way.
-
RFC archive
-
Internet Drafts
related to IPSEC
-
US government
site with their FIPS
standards
-
Archives of the ipsec@tis.com mailing list where
discussion of drafts takes place.
Background information on IP
IPSEC Implementations
Vendors of IPSEC Implementations
Lists of vendors
-
S/WAN is a multi-vendor Secure Wide Area Network
project based on the IPSEC protocols.
It has links to many IPSEC vendors and some free code.
-
The VPN Consortium
is a group for vendors of IPSEC products.
- Theodore Ts'o has an October 1997
list of 41 IPSEC implementations on his home page.
Vendors with Linux products
- Redcreek
provide an open source Linux driver for their PCI hardware VPN card. This
card has a 100 Mbit Ethernet port, an Intel 960 CPU plus more specialised
crypto chips, and claimed encryption performance of 45 Mbit/sec. The PC sees
it as an Ethernet board.
- According to a report on our mailing list,
Watchguard use Linux in their
Firebox product.
Open source IPSEC implementations
Other Linux IPSEC implementations
IPSEC for BSD Unix
Related code
-
Helsinki U of Technolgy
have implemented IPSEC for Solaris, Java and Macintosh
-
OpenBSD's isakmpd(8) daemon ported to Linux, working with the FReeS/WAN KILPS code. At
time or writing (early May 1999), this is a snapshot of development work, not yet
a full release:
-
ENskip, a free implementation
of Sun's SKIP protocol
-
a
patch to make IPSEC, PPTP and SSH VPNs work through a Linux firewall with
IP masquerade.
Note that this is not required if the same machine does IPSEC and masquerading,
only if you want a masquerade client to be the IPSEC gateway.
-
vpnd, a non-IPSEC VPN daemon for Linux
which creates tunnels using Blowfish encryption
Interoperability
Interoperability test sites
Interoperability results
Linux FreeS/WAN has undergone initial testing for interoperability
with various other IPSEC implementations. Results to date are in our
compatibility document.
ICSA offer certification programs
for various security-related products.
See their list of
certified IPSEC products. Linux FreeS/WAN is not currently on that list,
but several products with which we interoperate are.
Click below to go to: