I often see in logs somebody from USA, China, Korea etc. trying to connect to my vpn, all ipsec negotiations failed, but... how to secure this more ?
for now i drop any ipsec-esp and ipsec-ah connections, except Vpn Allow list..
Port Knocking is not the right approach. It's a nasty hacky bodge.Drop everything except whitelist is the right approach. If you need dynamic whitelist you would need to implement port knocking.