Hello, i am trying to set up a tunnel from:
kubernetes pod running in a kube cluster on AWS
3rd party web service

My pod is at
Our AWS elastic IP is a.b.c.d

I am creating the tunnel from the pod with Libreswan running as a sidecar container.

If I set

What will the far side have to permit?
Is it a.b.c.d or

For the packets the far side sees, will they see a source IP of a.b.c.d in IPSec packet as well as encapsulated packet?

