On 29 August 2013 16:15, Joel Wirāmu Pauling <joel(a)aenertia.net> wrote:
I know this is SOT; but have you considered using a
different tunnel tech
or are you completely married to IPSEC?
I have similar experiences in the past - i've found that for a large chunk
of use cases switching to OpenVPN on an commodity box sitting at the edge
is far more simple and reliable (and has a number of performance gains).
Yes we are somewhat married to requiring good cross-vendor IPSec support.
We already utilise OpenVPN where we can, our experience has been similar
*Mark Goldfinch | Systems Team Leader
nz: +64 4 498 6000