over the sec(4) interfaces. the next step is to set up routes to your nets
in aws over these links. we use bgpd to dynamically learn routes
and fail over between the the different sec interfaces, but if you
wanted to do ecmp/multipath you could manually add routes over each
interface.
dlg
> -
al Message -
From: "Hrvoje Popovski"
To: "Rafał Ramocki" , "bugs"
Sent: Monday, March 11, 2024 1:05:10 PM
Subject: Re: HA IPSec with AWS - no second flow
On 11.3.2024. 10:22, Rafał Ramocki wrote:
>> (...)
> I think IKED may detect that flow is already set for
On 11.3.2024. 10:22, Rafał Ramocki wrote:
> Hello,
>
>
> Hello, I'm not sure if I'm doing something wrong or if is it a common
> problem. I have iked.conf set up in the following way:
>
> ikev2 active from 10.2.15.0/24 to 172.31.0.0/20 from 10.2.15.0/24 to
> 172.31.16.0/20 from 10.2.15.0/24