Greetings everyone,
Anyone could point me out why would we want to use "tunnel" mode to add an extra IP header?
From what I saw if we look and analyze a packet in wireshark:
This is Transport mode:
And this is Tunnel mode:
Now, either wireshark is bugged, or there is absolutely ZERO difference between the two packet.
They say that in "tunnel mode" there is an additional new IP header that was generated.
(So in "Tunnel mode" we had an original header and another totally same new header was replicated and put in front of the whole encrypted packet? or what the hell.)
Why would we replicate and put the totall same header in front of our encrypted packet?
Because we could make sure that the "original encrypted header would be fully untouched"? or something?
Anyone could help me out with this?
Point out whats the difference between the two wireshark packet capture?
No comments:
Post a Comment