[ale] sshd resource intensive??

Stephan Uphoff ups at tree.com
Sun May 16 16:09:36 EDT 2004


Geoffrey wrote:
> So considering this issue, anyone have better suggestions for securing a 
> wifi connection.  vtunnel or openvpn perhaps?  I would expect them all 
> to have similar overhead issues.  As I recall, vtunnel is ssh based 
> anyway.  Maybe some tweeks to ssh could produce faster processing?

I am using an ipsec encrypted gre tunnel from my FreeBSD 5.2.1
gateway to my linux (2.6) laptop.

Linux was not happy if the mtu of the gre tunnel was to big
and I had to manually lower it to allow for the ipsec header.

FreeBSD's gre tunnel had has some issues with uninitialized 
Ip header fields but was easy to fix.

Racoon (key exchange) configuration files are really challenging 
to debug.

This is on 802.11b ... so encryption overhead is not an issue
- especially since I am using blowfish.

	Stephan



More information about the Ale mailing list