Skip to main content
IPsec

IPsec

Internet protocolWikipedia

Search complete. 46 mentions across 19 episodes found for "IPsec".

Sep 18, 2026

Bill DockeryGUEST
39:00
If you put it in terms of that one, it's just going to take longer to do.
Bill DockeryGUEST
39:03
And then when you consider some of these keys, if you tried to send this as a singular packet, the MTU sizes in places, if you send this across, you know, like a carrier network and it's dropping packets because it doesn't like the fragmentation on UDP, because some of this stuff does run on UDP, you see IPsec fail,
Drew Conry-MurrayHOST
39:21
right?
Bill DockeryGUEST
39:21
So yeah, exactly.

10 MINS LATER

Bill DockeryGUEST
49:41
But acting as a router, where does encryption show up? So I got a router, MACsec is a great one.
Bill DockeryGUEST
49:48
You hit it on the head, right? I'm terminating an
Scott RobohnHOST
49:50
IPsec tunnel or a MACsec tunnel on the router somewhere.
Scott RobohnHOST
49:53
And hopefully it's on hardware in a dedicated
Bill DockeryGUEST
39:00
If you put it in terms of that one, it's just going to take longer to do.
Bill DockeryGUEST
39:03
And then when you consider some of these keys, if you tried to send this as a singular packet, the MTU sizes in places, if you send this across, you know, like a carrier network and it's dropping packets because it doesn't like the fragmentation on UDP, because some of this stuff does run on UDP, you see IPsec fail,
Drew Connery-MurrayHOST
39:21
right?
Bill DockeryGUEST
39:21
So yeah, exactly.

10 MINS LATER

Bill DockeryGUEST
49:41
But acting as a router, where does encryption show up? So I got a router, MACsec is a great one.
Bill DockeryGUEST
49:48
You hit it on the head, right? I'm terminating an
Scott RobohnHOST
49:50
IPsec tunnel or a MACsec tunnel on the router somewhere.
Scott RobohnHOST
49:53
And hopefully it's on hardware in a dedicated
Bill DockeryGUEST
39:00
If you put it in terms of that one, it's just going to take longer to do.
Bill DockeryGUEST
39:03
And then when you consider some of these keys, if you tried to send this as a singular packet, the MTU sizes in places, if you send this across, you know, like a carrier network and it's dropping packets because it doesn't like the fragmentation on UDP, because some of this stuff does run on UDP, you see IPsec fail,
Drew Conry-MurrayHOST
39:21
right?
Bill DockeryGUEST
39:21
So yeah, exactly.

10 MINS LATER

Bill DockeryGUEST
49:41
But acting as a router, where does encryption show up? So I got a router, MACsec is a great one.
Bill DockeryGUEST
49:48
You hit it on the head, right? I'm terminating an
Scott RobohnHOST
49:50
IPsec tunnel or a MACsec tunnel on the router somewhere.
Scott RobohnHOST
49:53
And hopefully it's on hardware in a dedicated
Sec GuyHOST
4:22
This is data moving over the network.
Sec GuyHOST
4:24
We protect this with TLS or IPSec.
Sec GuyHOST
4:28
And three, data in use.
Sec GuyHOST
4:30
This is data currently in your RAM or CPU.
James MesserHOST
65:27
The MIBs never go down to that file level, so it has no way to monitor individual files.
James MesserHOST
65:33
And then lastly, IPsec.
James MesserHOST
65:35
IP security, which describes a set of protocols that are used commonly to tunnel information across an encryption or a VPN-type tunnel between sites.
James MesserHOST
65:45
This becomes pretty useful if you are connecting two sites together, site to site, and you want to encrypt all the data going between those locations.
James MesserHOST
65:52
That is a very common and perfect use for IPsec and IPsec tunnels.
James MesserHOST
65:57
IPsec tunnels have nothing to do with monitoring individual files or determining if any of those files have changed.
James MesserHOST
66:03
Therefore, that would not be the answer we're looking for.
James MesserHOST
66:05
The one here, the only answer that makes any sense is the FEM.
Keith TokashGUEST
23:02
Get them on there.
Keith TokashGUEST
23:03
Get two FTDs to start and build an IPsec tunnel between them.
Drew Connery-MurrayHOST
23:08
Ah.
Keith TokashGUEST
23:08
And then, then build, like, a, a Get VPN tunnel, and then, you know, j- just work through all the technology so that you understand the FTD.

20 MINS LATER

Drew Connery-MurrayHOST
43:20
[laughs]
Keith TokashGUEST
43:21
Uh, just im- w- all the time that I was taking, I'm reading and I'm writing, uh, other things, but, you know, after a few months of that, I'm going to ignore the actual study material, study how to build a lab, do that, and then I'm just gonna, I'm just gonna play in the mud like, like a happy little boy.
Keith TokashGUEST
43:44
And, and, you know, I'm gonna learn how to do the things that I was reading about because it's actually... it's, you know, it's a lot more satisfying as well to, to get those FTDs up, even if they're just virtualized on one box in the other room, and build that IPsec tunnel.
Keith TokashGUEST
44:01
And then, you know, I, I don't know how many ti- how many people remember their, um...
Keith TokashGUEST
43:28
But, you know, after a few months of that, I'm going to ignore the actual study material, study how to build a lab, do that, and then I'm just gonna, I'm just gonna play in the mud like, like a happy little boy.
Keith TokashGUEST
43:44
And, and, you know, I'm gonna learn how to do the things that I was reading about because it's actually... it's, you know, it's a lot more satisfying as well to, to get those FTDs up, even if they're just virtualized on one box in the other room, and build that IPsec tunnel.
Keith TokashGUEST
44:01
And then, you know, I, I don't know how many ti- how many people remember their, um...
Keith TokashGUEST
44:06
the first time they, they, they messed around with two Cisco routers and configured loopback addresses on two routers and then advertised them into a protocol, and then you could ping across the, the direct connection, and it was like, "Oh, oh, I did something." Right?
Keith TokashGUEST
23:02
Get them on there.
Keith TokashGUEST
23:03
Get two FTDs to start and build an IPsec tunnel between them.
Drew Connery-MurrayHOST
23:08
Ah.
Keith TokashGUEST
23:08
And then, then build like a, a get VPN tunnel, and then, you know, j- just work through all the technology so that you understand the FTD.

20 MINS LATER

Keith TokashGUEST
43:22
It, it...
Keith TokashGUEST
43:23
All the time that I was taking, I'm reading and I'm writing, uh, other things.
Keith TokashGUEST
43:28
But, you know, after a few months of that, I'm going to ignore the actual study material, study how to build a lab, do that, and then I'm just gonna, I'm just gonna play in the mud like, like a happy little boy, and, and, you know, I'm gonna learn how to do the things that I was reading about because it's actually... it's a... you know, it's a lot more satisfying as well to, to get those FTDs up, even if they're just virtualized on one box in the other room, and build that IPsec tunnel.
Keith TokashGUEST
44:01
And then, you know, I, I don't know how many ti- how many people remember their, um...
JoséeHOST
34:39
Right.
JoséeHOST
34:40
They would establish an IPsec tunnel.
JoséeHOST
34:42
And critically, the enterprise would have had to punch a hole in their perimeter, exposing inbound firewall ports to the public internet just to accept that tunnel connection.
Ernie PrescottHOST
34:51
Which is terrifying.
PhoneboyHOST
3:46
And we actually did a tech talk on this back in July, which is, uh, linked in the show notes.
PhoneboyHOST
3:50
Now, we also offer Smart Console's single-click IPsec tunnel setup between a Check Point Firewall and Check Point SASE.
PhoneboyHOST
3:56
And this provides best practices for both full mesh and hub-and-spoke topologies and supports, uh, policy-based and route-based modes.
PhoneboyHOST
4:04
On the SD-WAN front, we now offer dynamic routing, uh, with equal-cost multi-path, uh, s-backhaul data center failover for local breakout link degradation, layer two overlay support, simplified carrier grade NAT configuration.

9 more episodes mention IPsec.

Create an account to see the whole feed, search across every transcript, and follow the entities you care about.

We value your privacy

We use cookies to understand how you use our platform and to improve your experience. Click “Accept All” to consent, or “Decline non-essential” to opt out of non-essential cookies. Read our Privacy Policy.