An error occurred while saving the commentAlexander Patrakov commented
Not really done:
1. There are MTU issues under Linux (big packets fail to come through the tunnel, I had to explicitly clamp PMTU to 1352).
2. The traffic stops flowing after ~512 MB of data, due to broken rekeying.
3. I need to pin the certificate, because StrongSwan does not trust otherwise-valid wildcard certificates unless pinned.