Can I encapsulate an outgoing IP packets using IPsec with different src/dst ip addresses using strongSwan? For example, the local host is An application generates an IP packets destined to, but when the packet is passed to IPsec, it is encapsulated (tunneled) using an src ip address of and a dst. address of How can I use ip xfrm or other tools to make it?

Thanks a lot!