The plan for road warrior access?

2017-09-09 Thread Wang Jian
Hi Jason,

Wireguard is great for site to site VPN, even in current early stage.
We will replace our IPSec deployment with wireguard, after the
multihome issue fixed. Thanks for your outstanding work.

For road warrior access, I think it's quite straghtforward to build an
SSL VPN around wireguard, to address these issues:
1. integration into existing authentication system (ldap, radius, oauth2, saml)
2. address pools, allocation of client address; multiple connections per user
3. pushing address, routing and dns config to client; split or full tunnel
4. ACLs

(The client.sh demo is an example)

But wireguard is in early stage, the mentioned functionalities can be
designed as part of wireguard and tools, protocols.

Wireguard is meant to obsolete IPSec and likes. How about your plan on
road warrior access?
___
WireGuard mailing list
WireGuard@lists.zx2c4.com
https://lists.zx2c4.com/mailman/listinfo/wireguard


Re: Multihomed server issue

2017-09-09 Thread Wang Jian
2017-09-08 5:28 GMT+08:00 Jason A. Donenfeld :
> Hey there,
>
> This all should be fixed and working well in the latest snapshot. Can
> you test this and confirm that it behaves the way you were hoping?
>

Hi Jason,

It works as expected now. Thanks a lot.

--
Wang Jian
___
WireGuard mailing list
WireGuard@lists.zx2c4.com
https://lists.zx2c4.com/mailman/listinfo/wireguard