strongSwan KVM Tests / ikev2-stroke / nat-rw-psk

Test ikev2-stroke/nat-rw-psk

Description

The roadwarriors alice and venus sitting behind the NAT router moon set up tunnels to gateway sun. UDP encapsulation is used to traverse the NAT router. Each roadwarrior shares its own Pre-Shared Key (PSK) with the gateway sun.

Upon the successful establishment of the IPsec tunnel, leftfirewall=yes automatically inserts iptables-based firewall rules that let pass the tunneled traffic. In order to test the tunnel, the NAT-ed hosts alice and venus ping the client bob behind the gateway sun.

alice venus moon winnetou sun bob

alice

venus

sun

tcpdump