[Openswan Users] running ipsec over bridged ppp connections

Paul Wouters paul at xelerance.com
Mon Oct 30 13:59:52 EST 2006


On Mon, 30 Oct 2006, Simon Charles wrote:

>     Is it possible to run ipsec tunnel over a bridged connection (
> bridge of two ppp connections ) ??? I want to avoid dropping the ipsec
> tunnel in the event the ppp connection fails. So i want to run two ppp
> sessions for redundancy - create a bridge on these two ppp sessions -
> and then run ipsec tunnel over that bridge.

You can run ipsec on any interface, but you can't change its primary
IP on the fly and hope the tunnel survives. I am not sure if I understand
your situation enough to tell you if what you do is possible.
People tend to setup GRE tunnels for redundancy, and run ipsec within the
GRE.

Paul
-- 
Building and integrating Virtual Private Networks with Openswan:
http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155


More information about the Users mailing list