I have setup an IPsec tunnel from my linux box to my astaro firewall. The connection seems ok, but on my linux box I dont have a ipsecX interface like I do on my astaro. Consequently I cannot go from computers behind my debian gateay to computers behind my astaro gateway. I'm told that virtual interfaces are no more with strongSwan since it uses in-Kernel IPSec support and to use iptables in stead to do my routing. Does anyone know if this information is correct, if so is there an example out there?