[Swan] vxlan support

Paul Wouters paul at nohats.ca
Tue Jan 23 15:53:05 UTC 2018


On Tue, 23 Jan 2018, antonio wrote:

> did anyone configured vxlan with libreswan?
> 
> my idea is to create a tunel ipsec  and then send all the vxlan traffic trought the tunnel. i guess that would be
> something like l2tp/ipsec, but i must create ip xfrm rules to re-direct the traffic, no?
> 
> apreciate any sugestion on how to do it.

I dont know vxlan, but assuming it is some IP based encapsulation, you
should be able to setup a tunnel that only allows the encapsulated
protocol (using leftprotoport= and rightprotoport=)

Paul


More information about the Swan mailing list