[Swan] IKEv2 roaming setup

Glenn Pierce glennpierce at gmail.com
Mon Sep 18 08:52:07 UTC 2017


So I am trying to implement
https://libreswan.org/wiki/VPN_server_for_remote_clients_using_IKEv2


Some background.


I have an existing site to site vpn working fine and it looks like

Site A  ->   Firewall With NAT  -> Site B

Now we want some roaming employees to access site A by having a vpn
login to Site B.

My first question is

The instructions above say the config variable left is an actual ip.
Is the the firewall address as our SiteB does not have a public address ?

ie the docs say

# The server's actual IP goes here - not elastic IPs
left=1.2.3.4

sorry not sure what elastic means here.

Thanks


More information about the Swan mailing list