Hi friends, I have a doubt concerning VPN and packet filtering: if we have a site-to-site (firewall to firewall) VPN, when an encrypted packet arrives into the destination firewall's interface...which is first[:D]ecrypt the packet or match it against the rules in the packet filtering without decryption?
In the case first thing is decrypt the packet...who's allowing the VPN connection??(cannot be the rules...they are still not matched)
In the case first thing is packet filtering...does it mean that users through the VPN skip the firewall packet filtering??
Anything you answer me...is the same for ALL the firewalls?
THANK YOU VERY MUCH
Dani
This thread was automatically locked due to age.