openvpn and system overhead

Eugene Grosbein eugen at grosbein.net
Tue Apr 23 03:04:56 UTC 2019


On 22.04.2019 22:58, Louis Kowolowski wrote:
> On Apr 22, 2019, at 10:32 AM, Wojciech Puchar <wojtek at puchar.net> wrote:
>>
>>>> well it has to cooperate with multitude of clients like windoze,
>>>> point&click routers etc. that's why openvpn.
>>>
>>> Windows has stock support for IPSec with and without L2TP and has no stock openvpn, so IPSec is more preferable.
>>
>> can IPSEC VPN work over nat? even freebsd-freebsd case.
>>
>> I cannot find any tutorial how to do this.
> 
> -ish
> You must forward udp/4500 to the host and IPSec will negotiate a tunnel successfully.
> 
> https://tools.ietf.org/html/rfc3947 <https://tools.ietf.org/html/rfc3947>

No need to forward anything for client side.




More information about the freebsd-hackers mailing list