[Swan] Call web service from Kube pod

Siraj K sirajka at hotmail.com
Sat Oct 3 17:49:55 UTC 2020


Hello, i am trying to set up a tunnel from:
kubernetes pod running in a kube cluster on AWS
to
3rd party web service

My pod is at 10.0.6.159
Our AWS elastic IP is a.b.c.d

I am creating the tunnel from the pod with Libreswan running as a sidecar container.

If I set
 left=%defaultroute
 leftid=@me
 leftsourceip=a.b.c.d
 leftnexthop=%defaultroute

What will the far side have to permit?
Is it a.b.c.d or 10.0.6.159?

For the packets the far side sees, will they see a source IP of a.b.c.d in IPSec packet as well as encapsulated packet?

Thank you
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.libreswan.org/pipermail/swan/attachments/20201003/216cc04e/attachment.html>


More information about the Swan mailing list