Slashdot Mirror


Opportunistic Encryption of IP traffic: FreeS/WAN 2.0

Russ Nelson writes "Since 1996, John Gilmore has dreamed of an Internet where all traffic between cooperating sites is encrypted. He has supported the FreeS/WAN project which uses IPSEC to encrypt IP traffic on an opportunistic encrypting basis. The team has released Linux FreeS/WAN 2.00, their first release optimized for Opportunistic Encryption (OE). After installation, ZERO host configuration is required for OE! A Linux box running 2.00 will encrypt all IP packets to other OE capable boxes whenever possible, provided you publish a key and IPsec gateway information in DNS." Nice.

1 of 153 comments (clear)

  1. Re:not really by Troed · · Score: 1, Troll
    Don't reply to threads when you haven't got a clue on the subject.


    NSA most certainly not has processing power to even begin "sniffing" data encrypted with a knwon good 128 bit stream cipher where the key has been exchanged with 2048 bit DH.