The tunnel model of IPSec can be either host to host or gateway to gateway. For having a host-to-host tunnel O no gateways should be used O private IP addresses must be used in the hosts. O private IP addresses can't be used in the hosts. O Network Address Translation (NAT server must be used in gateways.