On 29 August 2013 16:15, Joel Wir��mu Pauling <joel@aenertia.net> wrote:
I know this is SOT; but have you considered using a different tunnel tech or are you completely married to IPSEC?

I have similar experiences in the past - i've found that for a large chunk of use cases switching to OpenVPN on an commodity box sitting at the edge is far more simple and reliable (and has a number of performance gains).

Yes we are somewhat married to requiring good cross-vendor IPSec support. ��We already utilise OpenVPN where we can, our experience has been similar to yours.

Thanks,
--

Mark Goldfinch |��Systems Team Leader

MODICA GROUP

nz:��+64 4 498 6000