[strongSwan] Using TAP interface for strongswan

Pawel Grzesik pawel.grzesik at brainstorm.co.uk
Mon Nov 25 12:44:09 CET 2013


As I remember the native IPsec stack of the Linux 2.6 kernel does not create any special ipsec interfaces but I think you can do this by creating bind the virtual eth0 interface directly to a tap device on the host.

Thanks,
Pawel Grzesik

On 25 Nov 2013, at 11:38, Ccf Cloud <ccfcloud at gmail.com> wrote:

> Hi,
> 
> Can some one please answer this question?
> 
> 
> On Mon, Nov 18, 2013 at 6:13 PM, Ccf Cloud <ccfcloud at gmail.com> wrote:
> Hi,
> 
> Is it possible to use TAP interface instead of TUN for establishing end to end tunnel using strongSwan. My problem is this:
> 
> I want to bridge the tunnel interface with some other existing interface. Now since tun is an IP layer PPP link, I cannot 
> add it to the bridge interface. However, having a TAP interface works well with the bridge.
> 
> 
> Any help in this regard will be appreciated.
> 
> 
> --Regards
>   SAM
> 
> 
> --Regards
>  SAM
> _______________________________________________
> Users mailing list
> Users at lists.strongswan.org
> https://lists.strongswan.org/mailman/listinfo/users

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20131125/e955d6d7/attachment.html>


More information about the Users mailing list