Brian A. Seklecki <laval...@spiritual-machines.org> wrote: > I haven't looked if we have support, but gre(4) w/ ipv6 address and stf(4) > seem to be best options out there for secure v6 tunnels.
That sounds... bizarre. > I'm wondering if a tranditional ipv6 isakmp(8) ipsec tunnel (using IPv4 > enpoints?!) is a safe alternative, or what other solutions people are > cooking up on OpenBSD for tunneling IPv6 security. The default encapsulation configured by ipsecctl: ESP in tunnel mode. -- Christian "naddy" Weisgerber na...@mips.inka.de