Koozali.org: home of the SME Server

openvpn

Offline GPete

  • **
  • 38
  • +0/-0
    • http://aaahomebase.com
openvpn
« on: July 05, 2006, 03:00:18 PM »
hancees's excellent how-to:
http://hanscees.com/sme7/openvpnsitetositetunnelsme7.html
adds to the uses of the SME server for me.

2 questions:
1. The key is 1024 bit. Does that mean the traffic through the VPN is 1024 bit encrypted?
2. Which would be more vulnerable, the traffic or the servers?

Offline crazybob

  • *****
  • 894
  • +0/-0
    • Stalzer R&D
openvpn
« Reply #1 on: July 05, 2006, 03:26:01 PM »
Gpete,

  Take a look at http://openvpn.net/. I think they can answer question one.
  I am not shure about question 2

Bob
If you think you know whats going on, you obviously have no idea whats going on!

Offline GPete

  • **
  • 38
  • +0/-0
    • http://aaahomebase.com
OpenVPN
« Reply #2 on: July 05, 2006, 04:03:17 PM »
Thanks, Bob.

I spent a half-hour at their site, and I know more than I did, but.....

I came away convinced that the traffic is safe, confident that the authentication will be done with the 1024 bit key, Not sure if the key will be involved in encrypting the traffic.

I had the feeling that most of the assurances were about how OpenVPN would not compromise the servers. That may be because the traffic is essentially invulnerable and I just don't know enough to appreciate it.