My Strongswan :

Local IP:
Elastic IP:
OS: Ubuntu
– Customer grade broadband Internet
– Public IP: – connect to my fiber optics
– Local gateway IP:
– we need to setup porftforwarding : UDP port 4500,500, to our router interface
My Cisco:
– Cisco 1841
– fa0/1 :  – connect to My WAN router local interface
– fa0/0: – connect to my local switch / pc

My Strongswan config:




This is my Cisco configuration:


In this setup, we can decide where is internet break out for our client ,
– via our remote site (strongswan)    ->  you must have the line in #note100       and remove line #note101
– via our local internet provide    -> keep the line #note101