Koozali.org: home of the SME Server

Obsolete Releases => SME 7.x Contribs => Topic started by: GPete on July 05, 2006, 03:00:18 PM

Title: openvpn
Post by: GPete on July 05, 2006, 03:00:18 PM
hancees's excellent how-to:
http://hanscees.com/sme7/openvpnsitetositetunnelsme7.html
adds to the uses of the SME server for me.

2 questions:
1. The key is 1024 bit. Does that mean the traffic through the VPN is 1024 bit encrypted?
2. Which would be more vulnerable, the traffic or the servers?
Title: openvpn
Post by: crazybob on July 05, 2006, 03:26:01 PM
Gpete,

  Take a look at http://openvpn.net/. I think they can answer question one.
  I am not shure about question 2

Bob
Title: OpenVPN
Post by: GPete on July 05, 2006, 04:03:17 PM
Thanks, Bob.

I spent a half-hour at their site, and I know more than I did, but.....

I came away convinced that the traffic is safe, confident that the authentication will be done with the 1024 bit key, Not sure if the key will be involved in encrypting the traffic.

I had the feeling that most of the assurances were about how OpenVPN would not compromise the servers. That may be because the traffic is essentially invulnerable and I just don't know enough to appreciate it.