I must have missed the reason why there is an effort to use TAP vs TUN. I will see if i can find it in the earlier posts. Is it because people's routers is stuck with TAP? I think the newer Netgear models suffer from this, which is better than it was when they did not seem to support VPN at all as a server. Or is it because people have services that are not IP traffic like poorly configured old windows gear (not WINS) or non-IP network printers? In my opinion, use TUN if at all possible, as it cleans up traffic on the net due to the nature of L3 routing (TUN) vs bridging the broadcast domain (TAP). As
@nayr pointed out, it is easy with the right gear (ie newer ASUS router), but the theory and bits underneath is fairly complicated.