IPSEC tunnels

krad kraduk at gmail.com
Fri Apr 8 09:55:09 UTC 2016


I did do it once a long time ago, and it did work, but remember you are
dealing with layer 3 so you cant use normal port forwarding  for the tunnel
traffic. The key exchange is less problematic. It was a bit of a head ache,
and if you can avoid the NAT you will be far better off.

On 8 April 2016 at 06:50, Wojciech Puchar <wojtek at puchar.net> wrote:

> does anyone use this in production? How about performance. OpenVPN
> performance is poor due to system call/context switch on every packet.
>
> I found lots of examples how to configure it, but none where one side is
> over NAT. Can it be configured that way? Any examples?
> _______________________________________________
> freebsd-hackers at freebsd.org mailing list
> https://lists.freebsd.org/mailman/listinfo/freebsd-hackers
> To unsubscribe, send any mail to "freebsd-hackers-unsubscribe at freebsd.org"
>


More information about the freebsd-hackers mailing list