this post was submitted on 30 May 2025
22 points (95.8% liked)
technology
23791 readers
288 users here now
On the road to fully automated luxury gay space communism.
Spreading Linux propaganda since 2020
Rules:
- 1. Obviously abide by the sitewide code of conduct.
Bigotry will be met with an immediate ban
- 2. This community is about technology. Offtopic is permitted as long as it is kept in the comment sections
- 3. Although this is not /c/libre, FOSS related posting is tolerated, and even welcome in the case of effort posts
- 4. We believe technology should be liberating. As such, avoid promoting proprietary and/or bourgeois technology
- 5. Explanatory posts to correct the potential mistakes a comrade made in a post of their own are allowed, as long as they remain respectful
- 6. No crypto (Bitcoin, NFT, etc.) speculation, unless it is purely informative and not too cringe
- 7. Absolutely no tech bro shit. If you have a good opinion of Silicon Valley billionaires please manifest yourself so we can ban you.
founded 4 years ago
MODERATORS
no, in fact I gave up on IPSec since I posted this and have started working on a wireguard setup because fuck this unmaintained pile of shit
It can be easier to find help with wireguard setups. I hope you succeed.
I learned how to do IPsec by using a perfectly functional example config in one room and changing things one tiny step at a time until it got where I needed it. IPsec can be very stable and simple but you gotta have your ducks in a row first.
well, the worst part is I had a functioning IPsec site-to-site setup as well as road warrior configuration, running on OpenWRT 19. but now after upgrading to OpenWRT 24, I can't get it to work again. they redid the whole config system and moved away from
ipsec
toswanctl
and the user-layer part of the IPSec subsystem in OpenWRT appears to have been barely maintained through the upgrade pathYeah the last five years have been very bad for open source projects. If you can justify the move to pfsense it’s very worth it to get away from projects that are maybe getting too far out over their skis.
I’m in the process of doing this with a handful of tomato derivative running old edge devices that never got replaced.