File:  [ELWIX - Embedded LightWeight unIX -] / embedaddon / strongswan / testing / tests / route-based / net2net-gre / description.txt
Revision 1.1.1.1 (vendor branch): download - view: text, annotated - select for diffs - revision graph
Wed Jun 3 09:46:46 2020 UTC (4 years, 4 months ago) by misho
Branches: strongswan, MAIN
CVS tags: v5_9_2p0, v5_8_4p7, HEAD
Strongswan

A connection between the subnets behind the gateways <b>moon</b> and <b>sun</b>
is set up using GRE interfaces.
<p/>
The gateways use <b>route-based forwarding</b> with <b>GRE tunnels</b>, with
firewall rules to allow traffic to pass. The IPsec traffic selector is limited
to the GRE protocol, specific routing is achieved with routes on the GRE
interfaces. The IKE daemon is configured to not install routes with
<em>charon.install_routes=0</em>, and static routes are installed for the
target subnets on the VTI interfaces.
<p/>
Client <b>alice</b> behind gateway <b>moon</b> pings client <b>bob</b> located
behind gateway <b>sun</b>.

FreeBSD-CVSweb <freebsd-cvsweb@FreeBSD.org>