Future of VPN: CIPE or IPSEC?

Christians, Stefan Mr. software at kkalice.com
Wed Nov 19 09:30:09 UTC 2003


We are just migrating our network from RHL 8.0 and 9 to Fedora Core 1.

Up to now we have had an IPSEC VPN by using FreeS/wan patches. Since we
implemented the VPN, some things have changed:

1) The reasons we had for choosing IPSEC over CIPE turned out to be
non-issues (all arguments we had for using IPSEC were never used, needed
or implemented).

2) We have found all software not included in the standard distribution
packages to cause maintenance nightmares. We have therefore decided that
if a required functionality is included in the standard distribution, we
will not use 3rd party solutions.


So now the big question for us is whether we should migrate our VPN
routers to Fedora Core 1 and convert them to CIPE, or whether we should
wait a few more months until the 2.6 kernel with integrated IPSEC is
included in the standard distribution.

The key question here is whether CIPE will be maintained as a Fedora
Package once the 3.6 kernel is distributed, or whether it will gradually
be phased out. We want to avoid converting to CIPE now and then back to
IPSEC again after a year.

Can any Fedora developer or strategist comment on this?


-- 
Sincerely,

K.K. Alice
S. Christians





More information about the fedora-list mailing list