[Openswan Users] OpenS/WAN high availability

Abraham Iglesias abraham.iglesias at genaker.net
Wed Jan 16 05:40:13 EST 2008

Hi all,
I have 2 nodes in my Internet access cluster which are both behind a 
NAT. I have 2 DSL lines and each node has its default route in a 
different one.

I was thinking too in a HA VPN solution, and I realized that there is no 
need to make openswan be a cluster resource. Tunnels would be established
permanently, the only thing which should be cluster resources are IP 

May be this would be a different solution, but it offers HA VPN to my 
internal net.

Anyway, it would be great to achieve your solution too!!



Paul Wouters escribió:
> On Wed, 16 Jan 2008, Michael Schwartzkopff wrote:
>> I am trying OpenS/WAN and heartbeat to establish a HA VPN solution. It works
>> quite good. But after a failover all tunnels have to be et up again.
>> Is there any possibility inside openswan to configure state syncronisation /
>> tunnel credentials syncronisation between the two knodes of a cluster?
> That is currently not implemented.
> Paul

More information about the Users mailing list