[strongSwan] IKE and IPsec over TCP through HTTP proxy CONNECT method?

Robert Tribb robert.tribb at gmail.com
Fri Oct 25 00:51:34 CEST 2013

Is there any hope of running IKE and the IPsec tunnel mode from a network
where internet access is only permitted through a HTTP proxy?

Many proxies allow the HTTP CONNECT method, usually for connection to an
external host listening on port 443.  Many people leave their ssh servers
listening on 443 to tunnel / port forward from HTTP(S)-only environments.
I hear that OpenVPN works that way.
