back

by mlhpdx·1d ago·view on hn ↗
That's not the case at all. The security here is more like HTTPS/TLS with the client not really being validated (just the server). The encryption remains just as strong as if the peers we're locked down.

It's different than the VPN use case where you absolutely want to lock down access to known peers.

1 comments
I don't see the contradiction here.
There's still confidentiality (encrypted transport) and authenticity of the server, how is that the same as null'd ipsec?