Geoff Galitz wrote:
Openswan is your friend. I have it running (under OpenSUSE) and it is quite easy. I tend to favor IPsec over SSL as I don't like to have openssl as a dependancy.
On the other hand, if you don't have a strict requirement for IPsec, it is much easier to get the udp or tcp packets that work for openvpn through NAT and port-forwarding routers.