AWS announced new VPN options today https://aws.amazon.com/blogs/aws/ec2-vpc-vpn-update-nat-traversal-additional-encryption-options-and-more/.
I'm hoping the UTM auto-magic VPC VPN setup feature gets updated to take advantage of this soon (I should put in a feature request ticket).
I'm most interested in the NAT-T option. I'm hoping this will help me save money on my UTM EC2 instances? Currently, I need separate ENI (network interface) for each VPN tunnel to a VPC, meaning I to spend more money on larger EC2 instances to accomodate additional interfaces. I don't have this issue for nailing up a tunnel between my UTM EC2 and multipe physical UTMs - I can share a single interface. Anyone have an idea if NAT-T will get around this problem?
And I'll be happy to upgrade from AES-128 to AES-256 for tunnels to VPCs! Been hoping that would be an option for a while.
This thread was automatically locked due to age.