[strongSwan] strongSwan site-to-site VPN on DMZ host with single interface

tom posturne at gmail.com
Fri Nov 23 09:50:03 CET 2018


how it be possible to run a strongSwan site-to-site VPN placed in a
DMZ with only a single NIC?
The strongSwan server is placed in my DMZ  with a routable public IP Public LAN
My local IP, where all outgoing traffic through the tunnel should bei
NAT to is

local site:

Remote site:

Do I've to bind as alias ip on the same NIC as
How do I've to setup the NAT?

It would be very glad, if you can bring me on the right way.I hope I
made a clear explanation.

Kind regards

