openvpn and system overhead

Louis Kowolowski louisk at cryptomonkeys.org
Mon Apr 22 15:59:43 UTC 2019


On Apr 22, 2019, at 10:32 AM, Wojciech Puchar <wojtek at puchar.net> wrote:
> 
>>> well it has to cooperate with multitude of clients like windoze,
>>> point&click routers etc. that's why openvpn.
>> 
>> Windows has stock support for IPSec with and without L2TP and has no stock openvpn, so IPSec is more preferable.
> 
> can IPSEC VPN work over nat? even freebsd-freebsd case.
> 
> I cannot find any tutorial how to do this.

-ish
You must forward udp/4500 to the host and IPSec will negotiate a tunnel successfully.

https://tools.ietf.org/html/rfc3947 <https://tools.ietf.org/html/rfc3947>

--
Louis Kowolowski                                louisk at cryptomonkeys.org <mailto:louisk at cryptomonkeys.org>
Cryptomonkeys:                                   http://www.cryptomonkeys.com/ <http://www.cryptomonkeys.com/>

Making life more interesting for people since 1977



More information about the freebsd-hackers mailing list