[strongSwan] PAT

Noel Kuntze noel at familie-kuntze.de
Fri Feb 26 21:12:20 CET 2016


Hello Sean,

> I really want to PAT my IPSEC'd subnets. Is there anyone to PAT an
> entire subnet with StrongSwan?
Handling the traffic is done in the kernel.
Use the NETMAP target in iptables and negotiate policies that secure the traffic between
your desired subnet and the remote side.

-- 

Mit freundlichen Grüßen/Kind Regards,
Noel Kuntze

GPG Key ID: 0x63EC6658
Fingerprint: 23CA BB60 2146 05E7 7278 6592 3839 298F 63EC 6658


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: OpenPGP digital signature
URL: <http://lists.strongswan.org/pipermail/users/attachments/20160226/f2d2b276/attachment.pgp>


More information about the Users mailing list