On 2/3/07, [EMAIL PROTECTED] <[EMAIL PROTECTED]> wrote:
[snip - html stuff snipped]
Guys,
been using pfsense for a while now, and love it.
previously I used lots of openvpn - but with using pfsense and WRAP boxes, and
CARP failover - I've moved to IPsec for a few reasons:
- openvpn under pfsense was unreliable, sometimes the whole openvpn processes
quit, and the box is needed to be restarted
- openvpn and CARP didnt play very well, or perhaps I didnt try enough. but
CARP and ipsec seem fine
The advantage openvpn did have, was being able to try multiple IPs from the
client end, and by routing different destinations over different connections,
it failed over nicely - keeps conncections intact, and bringing the same subnet
up over the 2nd connection. It didnt really have a prefered connection, but
atleast it did failover.
This has been fixed. Please see http://pfsense.blogspot.com/
Scott