
Figure 16.4
Scenario 4
The major difference between bridging and routing is that a routed VPN cannot IP-
broadcast while a bridged VPN can.
16.1.2 Tun and Tap Devices
Whenever you setup a VPN connection your IP packets are transferred over your secured
tunnel. The connection between the client's device and the server's device is called a
tunnel. A tunnel can use a so-called tun or tap device. They are virtual network kernel
drivers which implement the transmission of ethernet frames or ip frames/packets:
tun device
A tun device simulates a point-to-point network (layer 3 packets in the OSI model
such as Ethernet frames). A tun device is used with routing. It works with IP frames.
tap device
A tap device simulates an ethernet device (layer 2 packets in the OSI model such
as IP packets). A tap device is used for creating a network bridge. It works with
Ethernet frames.
184
Security Guide
Содержание LINUX ENTERPRISE DESKTOP 11
Страница 1: ...SUSE Linux Enterprise Server www novell com 11 March 17 2009 Security Guide...
Страница 9: ...32 7 Managing Audit Event Records Using Keys 433 33 Useful Resources 435...
Страница 10: ......
Страница 29: ...Part I Authentication...
Страница 30: ......
Страница 55: ...Figure 4 2 YaST LDAP Server Configuration LDAP A Directory Service 41...
Страница 126: ......
Страница 127: ...Part II Local Security...
Страница 128: ......
Страница 158: ......
Страница 173: ...Part III Network Security...
Страница 174: ......
Страница 194: ......
Страница 197: ...Figure 16 2 Scenario 2 Figure 16 3 Scenario 3 Configuring VPN Server 183...
Страница 210: ......
Страница 228: ......
Страница 229: ...Part IV Confining Privileges with Novell AppArmor...
Страница 230: ......
Страница 274: ......
Страница 300: ......
Страница 328: ......
Страница 340: ......
Страница 342: ......
Страница 386: ......
Страница 387: ...Part V The Linux Audit Framework...
Страница 388: ......