[strongSwan] Can StrongSwan be loadbalanced?

Houman houmie at gmail.com
Mon Nov 13 16:19:26 CET 2017


I have made quite a bit of research on how to load balance StrongSwan,
however, I get contradicting messages.

e.g. from my understanding, StrongSwan (IKEv2) works over UDP and not TCP.
Hence Aws load balancer is out of the question.  But so is HAProxy !!!

But I discovered that latest NGINX 1.10+ supports UDP load balancing and it
was easy to set it up.

I am currently listening to ports 500 and 4500 and it doesn't quite work. I
have raised an issue here: https://wiki.strongswan.org/issues/2464

Do I need to listen to port 50 and 51 as well?

Any tips or advice for me, please?
Many Thanks,
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20171113/8a1ea929/attachment.html>

More information about the Users mailing list