I am working on wan project that includes 24 sites. All sites are connect with each other like partial mesh and run ospf routing protocol. We need that user data move from one site to an other site in encrypted form. For example, if user of site A send data to the user of Site F then it pass through router of site B, C, D and E. Now one way of using ipsec, i make site to site vpn between A and B then B and C then C and D and so on. So while packet move from site A to site F will encrypted and decrypted on all hops.
My question, is there any other dynamic way in which if packet source is A and dest is F then an ipsec tunnel created from A to direct F.
I know a method called multiple gre (MGRE) but i dont want to involve jre in it.
I will be thankful, if someone respond on it.