Hello Sean, > I really want to PAT my IPSEC'd subnets. Is there anyone to PAT an > entire subnet with StrongSwan? Handling the traffic is done in the kernel. Use the NETMAP target in iptables and negotiate policies that secure the traffic between your desired subnet and the remote side.
-- Mit freundlichen Grüßen/Kind Regards, Noel Kuntze GPG Key ID: 0x63EC6658 Fingerprint: 23CA BB60 2146 05E7 7278 6592 3839 298F 63EC 6658
signature.asc
Description: OpenPGP digital signature
_______________________________________________ Users mailing list [email protected] https://lists.strongswan.org/mailman/listinfo/users
