On Fri, 15 Jan 2016, Roberto Suárez Soto wrote:
My "destination" server has two WANs, and I want to create two ipsec tunnels from the "source" to each of these WANs, and have failover in case one of the destination WANs goes down. The src and dst subnets would be the same in both tunnels.We're doing this with two IPSec tunnels in transport mode, GRE tunnels over them, and then BGP (though RIP would work too) with Quagga. It works very well, though admittedly is more complex. Feel free to ask if you need help.
Would you be willing to share/document that on our wiki as a HOWTO? I'm happy to do the write up if you give me some (anonymised) configurations of all components involved. Paul _______________________________________________ Swan mailing list [email protected] https://lists.libreswan.org/mailman/listinfo/swan
