Replace remaining ASCIIs in IPsec section with images.

This commit is contained in:
Marc Fonvieille 2003-08-15 12:28:17 +00:00
parent a7f321a514
commit 391f2d38b7
Notes: svn2git 2020-12-08 03:00:23 +00:00
svn path=/head/; revision=17872
2 changed files with 33 additions and 6 deletions

View file

@ -104,6 +104,9 @@ IMAGES_EN+= install/example-dir3.eps
IMAGES_EN+= install/example-dir4.eps IMAGES_EN+= install/example-dir4.eps
IMAGES_EN+= install/example-dir5.eps IMAGES_EN+= install/example-dir5.eps
IMAGES_EN+= security/ipsec-network.pic IMAGES_EN+= security/ipsec-network.pic
IMAGES_EN+= security/ipsec-crypt-pkt.pic
IMAGES_EN+= security/ipsec-encap-pkt.pic
IMAGES_EN+= security/ipsec-out-pkt.pic
IMAGES_EN+= vinum/vinum-concat.pic IMAGES_EN+= vinum/vinum-concat.pic
IMAGES_EN+= vinum/vinum-mirrored-vol.pic IMAGES_EN+= vinum/vinum-mirrored-vol.pic
IMAGES_EN+= vinum/vinum-raid10-vol.pic IMAGES_EN+= vinum/vinum-raid10-vol.pic

View file

@ -3534,19 +3534,33 @@ ipfw add 1 allow udp from W.X.Y.Z to A.B.C.D isakmp
<para>So if your outgoing packet started looking like this:</para> <para>So if your outgoing packet started looking like this:</para>
<screen> <mediaobject>
<imageobject>
<imagedata fileref="security/ipsec-out-pkt" align="center">
</imageobject>
<textobject>
<literallayout class="monospaced">
.----------------------. .----------------------.
| Src: 192.168.1.1 | | Src: 192.168.1.1 |
| Dst: 192.168.2.1 | | Dst: 192.168.2.1 |
| &lt;other header info&gt; | | &lt;other header info&gt; |
+----------------------+ +----------------------+
| &lt;packet data&gt; | | &lt;packet data&gt; |
`----------------------'</screen> `----------------------'</literallayout>
</textobject>
</mediaobject>
<para>Then it will be encapsulated inside another packet, looking <para>Then it will be encapsulated inside another packet, looking
something like this:</para> something like this:</para>
<screen> <mediaobject>
<imageobject>
<imagedata fileref="security/ipsec-encap-pkt" align="center">
</imageobject>
<textobject>
<literallayout class="monospaced">
.--------------------------. .--------------------------.
| Src: A.B.C.D | | Src: A.B.C.D |
| Dst: W.X.Y.Z | | Dst: W.X.Y.Z |
@ -3559,7 +3573,9 @@ ipfw add 1 allow udp from W.X.Y.Z to A.B.C.D isakmp
| +----------------------+ | | +----------------------+ |
| | &lt;packet data&gt; | | | | &lt;packet data&gt; | |
| `----------------------' | | `----------------------' |
`--------------------------'</screen> `--------------------------'</literallayout>
</textobject>
</mediaobject>
<para>This encapsulation is carried out by the gif device. As <para>This encapsulation is carried out by the gif device. As
you can see, the packet now has real IP addresses on the outside, you can see, the packet now has real IP addresses on the outside,
@ -3671,7 +3687,13 @@ ipfw add 1 allow ipencap from W.X.Y.Z to A.B.C.D
<para>Outgoing packets will now look something like this.</para> <para>Outgoing packets will now look something like this.</para>
<screen> <mediaobject>
<imageobject>
<imagedata fileref="security/ipsec-crypt-pkt" align="center">
</imageobject>
<textobject>
<literallayout class="monospaced">
.------------------------------. --------------------------. .------------------------------. --------------------------.
| Src: A.B.C.D | | | Src: A.B.C.D | |
| Dst: W.X.Y.Z | | | Dst: W.X.Y.Z | |
@ -3691,7 +3713,9 @@ ipfw add 1 allow ipencap from W.X.Y.Z to A.B.C.D
| | `----------------------' | | -' | | | | `----------------------' | | -' | |
| `--------------------------' | -------------' | | `--------------------------' | -------------' |
`------------------------------' --------------------------' `------------------------------' --------------------------'
</screen> </literallayout>
</textobject>
</mediaobject>
<para>When they are received by the far end of the VPN they will <para>When they are received by the far end of the VPN they will
first be decrypted (using the security associations that have first be decrypted (using the security associations that have