OpenBSD Journal

sasyncd - IPSec SA synchronization daemon for failover gateways in -current

Contributed by grey on from the giving VAX cluster IPsec implementations a run for their money, dept.

Thanks to Jonathan for writing in with the following:

Current now features sasyncd for IPSec failover.

OpenBSD gateways can so share one IP address through carp and share firewall states and IPSec SA and SPD information through pfsync and sasyncd. WooHoo!

Also see: sasyncd(8) and sasyncd(5)

Thanks to Brad Smith for pointing out that this is not ready for use just yet.

(Comments are closed)


Comments
  1. By jared spiegel (67.139.90.84) jrrs@ice-nine.org on

    also interested in seeing ipsecctl(8)/ipsec.conf(5) pan out.

  2. By lis (193.194.84.198) iulian on

    cool feature

  3. By lis (193.194.84.198) iulian@create.ro on

    cool feature

Credits

Copyright © - Daniel Hartmeier. All rights reserved. Articles and comments are copyright their respective authors, submission implies license to publish on this web site. Contents of the archive prior to as well as images and HTML templates were copied from the fabulous original deadly.org with Jose's and Jim's kind permission. This journal runs as CGI with httpd(8) on OpenBSD, the source code is BSD licensed. undeadly \Un*dead"ly\, a. Not subject to death; immortal. [Obs.]