Mixing if_ipsec in 11.1 with old policy based IPSEC

Muenz, Michael m.muenz at spam-fetish.org
Thu Mar 8 04:30:22 UTC 2018


Hi list,

I'm trying to get some docs and examples about the new if_ipsec code. 
For what I read now, it seems to be a bit tricky* running legacy policy 
based IPSEC in combination with on route based IPSEC with Strongswan. Is 
it possible to mix them for bigger sites running e.g. one Azure VPN and 
multiple legacy VPNs to customers?


Thanks!

Michael


[*] https://genneko.github.io/playing-with-bsd/networking/freebsd-vti-ipsec


More information about the freebsd-net mailing list