[strongSwan] Using TAP interface for strongswan

Noel Kuntze noel at familie-kuntze.de
Mon Nov 18 13:54:12 CET 2013


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Hello Sam,

IPsec is a layer 3 VPN, hence strongSwan works on layer 3. If you want to bridge on layer 2, you need to use l2tp inside the tunnel or other software that can tunnel layer 2.

Regards
Noel Kuntze

On 18.11.2013 13:43, Ccf Cloud wrote:
> Hi,
>
> Is it possible to use TAP interface instead of TUN for establishing end to end tunnel using strongSwan. My problem is this:
>
> I want to bridge the tunnel interface with some other existing interface. Now since tun is an IP layer PPP link, I cannot
> add it to the bridge interface. However, having a TAP interface works well with the bridge.
>
>
> Any help in this regard will be appreciated.
>
>
> --Regards
>   SAM
>
>
> _______________________________________________
> Users mailing list
> Users at lists.strongswan.org
> https://lists.strongswan.org/mailman/listinfo/users

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.22 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/
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=3F4c
-----END PGP SIGNATURE-----





More information about the Users mailing list