<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Significant IPsec Improvements now in 1.3!</title>
	<atom:link href="http://blog.pfsense.org/?feed=rss2&#038;p=211" rel="self" type="application/rss+xml" />
	<link>http://blog.pfsense.org/?p=211</link>
	<description>News, reviews and more related to the pfSense firewall project</description>
	<lastBuildDate>Thu, 23 May 2013 04:13:56 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.5.1</generator>
	<item>
		<title>By: Chris Buechler</title>
		<link>http://blog.pfsense.org/?p=211&#038;cpage=1#comment-3041</link>
		<dc:creator>Chris Buechler</dc:creator>
		<pubDate>Tue, 03 Feb 2009 15:25:22 +0000</pubDate>
		<guid isPermaLink="false">http://blog.pfsense.org/?p=211#comment-3041</guid>
		<description><![CDATA[FBI01: Yes, eventually.]]></description>
		<content:encoded><![CDATA[<p>FBI01: Yes, eventually.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: FBI01</title>
		<link>http://blog.pfsense.org/?p=211&#038;cpage=1#comment-3040</link>
		<dc:creator>FBI01</dc:creator>
		<pubDate>Tue, 03 Feb 2009 14:55:04 +0000</pubDate>
		<guid isPermaLink="false">http://blog.pfsense.org/?p=211#comment-3040</guid>
		<description><![CDATA[Cool! The new featres will be documented with example configurations?
Best regards.]]></description>
		<content:encoded><![CDATA[<p>Cool! The new featres will be documented with example configurations?<br />
Best regards.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Josh</title>
		<link>http://blog.pfsense.org/?p=211&#038;cpage=1#comment-2530</link>
		<dc:creator>Josh</dc:creator>
		<pubDate>Thu, 11 Dec 2008 16:20:34 +0000</pubDate>
		<guid isPermaLink="false">http://blog.pfsense.org/?p=211#comment-2530</guid>
		<description><![CDATA[This looks very promising!!!  Has there been any progress made on this since this article has been posted?]]></description>
		<content:encoded><![CDATA[<p>This looks very promising!!!  Has there been any progress made on this since this article has been posted?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Pixa</title>
		<link>http://blog.pfsense.org/?p=211&#038;cpage=1#comment-1810</link>
		<dc:creator>Pixa</dc:creator>
		<pubDate>Mon, 11 Aug 2008 22:59:38 +0000</pubDate>
		<guid isPermaLink="false">http://blog.pfsense.org/?p=211#comment-1810</guid>
		<description><![CDATA[The L2TP over IPSec feature will be #1 on my wishlist ;)  
As a OSX user it would be really nice to switch to l2tp/ipsec from pptp.
Best regards.]]></description>
		<content:encoded><![CDATA[<p>The L2TP over IPSec feature will be #1 on my wishlist <img src='http://blog.pfsense.org/wp-includes/images/smilies/icon_wink.gif' alt=';)' class='wp-smiley' /><br />
As a OSX user it would be really nice to switch to l2tp/ipsec from pptp.<br />
Best regards.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: JF</title>
		<link>http://blog.pfsense.org/?p=211&#038;cpage=1#comment-1733</link>
		<dc:creator>JF</dc:creator>
		<pubDate>Mon, 04 Aug 2008 05:08:26 +0000</pubDate>
		<guid isPermaLink="false">http://blog.pfsense.org/?p=211#comment-1733</guid>
		<description><![CDATA[Re. the per-user restriction, that would help make pfsense a viable alternative to the commercial boxes like Cisco ASA/PIX, Checkpoint etc. They all allow quite fine grained per user/group VPN user control, and that is sorely missing in pfsense and the other open source solutions I evaluated.]]></description>
		<content:encoded><![CDATA[<p>Re. the per-user restriction, that would help make pfsense a viable alternative to the commercial boxes like Cisco ASA/PIX, Checkpoint etc. They all allow quite fine grained per user/group VPN user control, and that is sorely missing in pfsense and the other open source solutions I evaluated.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Matthew</title>
		<link>http://blog.pfsense.org/?p=211&#038;cpage=1#comment-1659</link>
		<dc:creator>Matthew</dc:creator>
		<pubDate>Fri, 25 Jul 2008 08:01:45 +0000</pubDate>
		<guid isPermaLink="false">http://blog.pfsense.org/?p=211#comment-1659</guid>
		<description><![CDATA[It is possible to restrict user access to a specific destination network based on group inclusion when Xauth is used. I am evaluating the possibility of adding support for this to pfSense. This will require a bit of work with respect to the user management system which is my current focus of development. More details regarding this should surface soon.]]></description>
		<content:encoded><![CDATA[<p>It is possible to restrict user access to a specific destination network based on group inclusion when Xauth is used. I am evaluating the possibility of adding support for this to pfSense. This will require a bit of work with respect to the user management system which is my current focus of development. More details regarding this should surface soon.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Chris Buechler</title>
		<link>http://blog.pfsense.org/?p=211&#038;cpage=1#comment-1646</link>
		<dc:creator>Chris Buechler</dc:creator>
		<pubDate>Wed, 23 Jul 2008 19:18:55 +0000</pubDate>
		<guid isPermaLink="false">http://blog.pfsense.org/?p=211#comment-1646</guid>
		<description><![CDATA[L2TP is not part of this, no, it&#039;s a different beast entirely. It is being considered separately. It can run under mpd, this is strictly IPsec as it runs under ipsec-tools.]]></description>
		<content:encoded><![CDATA[<p>L2TP is not part of this, no, it&#8217;s a different beast entirely. It is being considered separately. It can run under mpd, this is strictly IPsec as it runs under ipsec-tools.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Ide</title>
		<link>http://blog.pfsense.org/?p=211&#038;cpage=1#comment-1645</link>
		<dc:creator>Ide</dc:creator>
		<pubDate>Wed, 23 Jul 2008 18:54:13 +0000</pubDate>
		<guid isPermaLink="false">http://blog.pfsense.org/?p=211#comment-1645</guid>
		<description><![CDATA[Will the 1.3 be supporting L2TP with this IPSEC improvement]]></description>
		<content:encoded><![CDATA[<p>Will the 1.3 be supporting L2TP with this IPSEC improvement</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Chris Buechler</title>
		<link>http://blog.pfsense.org/?p=211&#038;cpage=1#comment-1643</link>
		<dc:creator>Chris Buechler</dc:creator>
		<pubDate>Wed, 23 Jul 2008 14:14:35 +0000</pubDate>
		<guid isPermaLink="false">http://blog.pfsense.org/?p=211#comment-1643</guid>
		<description><![CDATA[Kim: 
a) There is no standard IPsec client in Windows XP. You can deploy the Shrew Soft client which works great. 
b) Yes, no differently than you can already filter IPsec traffic in 1.2.
c) as always - when it&#039;s ready. we&#039;ll have a development road map up in the next couple months or so]]></description>
		<content:encoded><![CDATA[<p>Kim:<br />
a) There is no standard IPsec client in Windows XP. You can deploy the Shrew Soft client which works great.<br />
b) Yes, no differently than you can already filter IPsec traffic in 1.2.<br />
c) as always &#8211; when it&#8217;s ready. we&#8217;ll have a development road map up in the next couple months or so</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Kim</title>
		<link>http://blog.pfsense.org/?p=211&#038;cpage=1#comment-1642</link>
		<dc:creator>Kim</dc:creator>
		<pubDate>Wed, 23 Jul 2008 13:06:16 +0000</pubDate>
		<guid isPermaLink="false">http://blog.pfsense.org/?p=211#comment-1642</guid>
		<description><![CDATA[Will it be possible to:
a) Have multiple mobile users connect using standard Windows XP VPN (IPSEC)?
b) Filter these so they can and cannot reach different destination hosts on the LAN?
c) When will all this be available (in beta and GA)?]]></description>
		<content:encoded><![CDATA[<p>Will it be possible to:<br />
a) Have multiple mobile users connect using standard Windows XP VPN (IPSEC)?<br />
b) Filter these so they can and cannot reach different destination hosts on the LAN?<br />
c) When will all this be available (in beta and GA)?</p>
]]></content:encoded>
	</item>
</channel>
</rss>
