Post #4488529
2026-08-10 03:45 UTC
Note to self: Just don't touch #ipsec. It's shit all way round and always breaks. Just use something else.
Why?
Every time I want an encrypted tunnel between two public IPs I think like "oh yea, using IPSec here would be easy and straight forward".
And then it never fucking works reliably. And if it does work it stops to work the next time you try to apply the exact same config. And it fails with shit like this...
What have I done wrong?!? Why work sometimes??
#networking #strongswan #ipv6
Replies (1)
-
@chewie@mammut.gogreenit.net 2026-08-10 12:21
@agowa338@chaos.social I rate wireguard - I use it for all my vpn needs at home. I don't know how suitable it is for big orgs - the management UIs aren't great, but it's SO much easier to set up in small environments, and works through NAT. Windows, Linux, Raspian and android clients are all very stable, only need about 4 lines in a config, and a public/private keypads. When I tried and OpenVPN server about 20 years ago, it was seriously complicated.