Re: HA IPSec with AWS - no second flow

2024-03-11 Thread David Gwynne
over the sec(4) interfaces. the next step is to set up routes to your nets in aws over these links. we use bgpd to dynamically learn routes and fail over between the the different sec interfaces, but if you wanted to do ecmp/multipath you could manually add routes over each interface. dlg > -

Re: HA IPSec with AWS - no second flow

2024-03-11 Thread Rafał Ramocki
al Message - From: "Hrvoje Popovski" To: "Rafał Ramocki" , "bugs" Sent: Monday, March 11, 2024 1:05:10 PM Subject: Re: HA IPSec with AWS - no second flow On 11.3.2024. 10:22, Rafał Ramocki wrote: >> (...) > I think IKED may detect that flow is already set for

Re: HA IPSec with AWS - no second flow

2024-03-11 Thread Hrvoje Popovski
On 11.3.2024. 10:22, Rafał Ramocki wrote: > Hello, > > > Hello, I'm not sure if I'm doing something wrong or if is it a common > problem. I have iked.conf set up in the following way: > > ikev2 active from 10.2.15.0/24 to 172.31.0.0/20 from 10.2.15.0/24 to > 172.31.16.0/20 from 10.2.15.0/24