Ethereal-users: RE: [Ethereal-users] Ethereal and Site-to-Site VPNs

Note: This archive is from the project's previous web site, ethereal.com. This list is no longer active.

From: Paul Hoffman / VPNC <paul.hoffman@xxxxxxxx>
Date: Tue, 6 Apr 2004 10:47:17 -0700
Watching IPsec VPN traffic with Ethereal works fine. In fact, it is what we use for all of our IPsec testing. See <http://www.vpnc.org/detail-basic-interop.html> for an example of how we do it and what it shows. You can see each side doing the IKEv1 dance as plaintext through message 4, then message 5 and 6 as encrypted, then Phase 2 happening, then ESP packets.

And, yes, I am using a real 10BaseT hub between all the gateways. Setting up a VLAN and other such magic on managed hubs should have worked in theory, but after 10 hours and three different switches, I gave up. Now if I could just find a good used 36- or 48-port hub...

--Paul Hoffman, Director
--VPN Consortium