Re: [Keepalived-devel] Keepalived, IPSec (freeswan) and Virtual IPs
Status: Beta
Brought to you by:
acassen
|
From: Alexandre C. <Ale...@wa...> - 2003-07-23 21:19:44
|
Hi Diego, >Everything works like a charm, except I have this particular need: the >firewall must also be the endpoint for IPSec VPNs. In the future I would like to work on this 'IPSEC tunnel takeover' (any sponsor interrested ? ;)), but I will start work using the stock 2.6 kernel IPSEC API instead of freeswan. Anyway, you can use the notify_* facilities in vrrp_instance block to launcg whatever you want according to VRRP FSM (MASTER/BACKUP/FAULT). Best regards, Alexandre |