[strongSwan] Meshed VPN with dynamic routing

Eric Germann ekgermann at semperen.com
Wed May 3 23:38:34 CEST 2017


Build GRE tunnels between sites.

Wrap GRE in IPSec for encryption.

Run BGP over the GRE interfaces.

I do this to tunnel traffic from Cloud providers across the globe.

EKG

> On May 3, 2017, at 4:32 PM, Michael Schwartzkopff <ms at sys4.de> wrote:
> 
> Hi,
> 
> I am thinking about a fully meshed VPN like described in
> 
> https://wiki.strongswan.org/projects/strongswan/wiki/SubnetsBehindMoreThanTwoGateways
> 
> But I want to make the routing dynamic. So if the link between site A and site
> B is interrupted the traffic between the subnets can be routed via the site C.
> Is such a scenario possible? How? Any hints?
> 
> Mit freundlichen Grüßen,
> 
> Michael Schwartzkopff
> 
> --
> 
> [*] sys4 AG
> 
> http://sys4.de, +49 (89) 30 90 46 64
> Schleißheimer Straße 26/MG, 80333 München
> 
> Sitz der Gesellschaft: München, Amtsgericht München: HRB 199263
> Vorstand: Patrick Ben Koetter, Marc Schiffbauer, Wolfgang Stief
> Aufsichtsratsvorsitzender: Florian Kirstein_______________________________________________
> Users mailing list
> Users at lists.strongswan.org
> https://lists.strongswan.org/mailman/listinfo/users

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 801 bytes
Desc: Message signed with OpenPGP
URL: <http://lists.strongswan.org/pipermail/users/attachments/20170503/b1c6fcb1/attachment.sig>


More information about the Users mailing list