[strongSwan] Multi ISP Fail-over

Dmitriy Ermakov demonihin at gmail.com
Wed Mar 8 18:13:13 CET 2017


Hello!

Could you help me with my question?

I wan to setup fail-over topology between two routers ("Branch 1"[B1]
and "Main Office"[MO1] in picture in attachment).

I want to create 4 IPSEC GRE tunnels between Routers public IP addresses
(and after that I will set OSPF in GRE tunnels for fail-over):

 1. MO1_ISP1 <=> B1_ISP1; policy: [10.8.100.2/32 <=> 10.8.1.2/32]
 2. MO1_ISP1 <=> B1_ISP2; policy: [10.8.100.2/32 <=> 10.8.2.2/32]
 3. MO1_ISP2 <=> B1_ISP1; policy: [10.8.101.2/32 <=> 10.8.1.2/32]
 4. MO1_ISP2 <=> B1_ISP2; policy: [10.8.101.2/32 <=> 10.8.2.2/32]

Could you answer me: is it possible with strongswan?
Could you send me example config for my configuration?

Thank you!

-- 

Best regards, Dmitriy Ermakov.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20170308/6936d072/attachment-0001.html>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: Multi ISP.png
Type: image/png
Size: 16823 bytes
Desc: not available
URL: <http://lists.strongswan.org/pipermail/users/attachments/20170308/6936d072/attachment-0001.png>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 801 bytes
Desc: OpenPGP digital signature
URL: <http://lists.strongswan.org/pipermail/users/attachments/20170308/6936d072/attachment-0001.sig>


More information about the Users mailing list