<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Open vpn multiple site to site S2S vs SSL&#x2F;TLS]]></title><description><![CDATA[<p dir="auto">currently i'm using IPSEC for site to site (10 tunnels) but I saw a faster performance when I tried to switch one over to OpenVPN (P2P shared key).</p>
<p dir="auto">If i need to add more OpenVPN S2S can i continue using shared key and just add clients at the rest of the locations connecting to the main site? Or create a new server for each client ? Or do i need to switch to P2P SSL\TLS for openVPN multisite ?</p>
<p dir="auto">When I tried to just add more clients connecting to the site using SharedKey connections weren't that stable.</p>
<p dir="auto">Can someone shed some light on how to approach this ?</p>
<p dir="auto">Thank you,</p>
<p dir="auto">y</p>
]]></description><link>https://forum.netgate.com/topic/88699/open-vpn-multiple-site-to-site-s2s-vs-ssl-tls</link><generator>RSS for Node</generator><lastBuildDate>Thu, 05 Mar 2026 08:18:26 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/88699.rss" rel="self" type="application/rss+xml"/><pubDate>Fri, 04 Sep 2015 20:31:34 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to Open vpn multiple site to site S2S vs SSL&#x2F;TLS on Fri, 11 Sep 2015 19:16:31 GMT]]></title><description><![CDATA[<p dir="auto">thanks jimp. i will go with SSL/TLS method. appreciate the link.</p>
]]></description><link>https://forum.netgate.com/post/570175</link><guid isPermaLink="true">https://forum.netgate.com/post/570175</guid><dc:creator><![CDATA[yaboc]]></dc:creator><pubDate>Fri, 11 Sep 2015 19:16:31 GMT</pubDate></item><item><title><![CDATA[Reply to Open vpn multiple site to site S2S vs SSL&#x2F;TLS on Thu, 10 Sep 2015 14:27:31 GMT]]></title><description><![CDATA[<p dir="auto">Shared Key is 1:1  – One client to one Server</p>
<p dir="auto">SSL/TLS can work either way. If you want only one server process and multiple clients, it must be SSL/TLS.</p>
<p dir="auto">That style of setup is explained at https://doc.pfsense.org/index.php/OpenVPN_Site-to-Site_PKI_%28SSL%29 -- be careful to follow everything, especially the parts about client specific overrides and iroutes.</p>
]]></description><link>https://forum.netgate.com/post/569851</link><guid isPermaLink="true">https://forum.netgate.com/post/569851</guid><dc:creator><![CDATA[jimp]]></dc:creator><pubDate>Thu, 10 Sep 2015 14:27:31 GMT</pubDate></item></channel></rss>