Server is openswan 2.4.4 (pondering upgrade to 2.4.5) on
2.6.11-gentoo-r5. It listens on a non-private IP, i.e., is not
NATted.<br>
Some clients are WindowsXP service pack 2. Those have trouble.<br>
<br>
I witnessed myself that while the VPN connection was established,
Outlook Express did not work. I seemed able to access the
Internet otherwise (e.g., HTTP to Google).<br>
My users complain that their mail doesn't work and they cannot reach
the Internet at all while connected (DNS (<a href="http://10.0.0.52"></b></font><font color="red"><b>MailScanner has detected a possible fraud attempt from "10.0.0.52" claiming to be</b></font> <font color="red"><b>MailScanner warning: numerical links are often malicious: 10.0.0.52</a>) resolves
<a href="http://www.google.com">www.google.com</a>, but that's it). They can reach machines on the
10.0.0.X subnet only.<br>
<br>
I haven't seen this symptom described here. Any ideas?<br>
<br>
From a Linux client (openswan 2.4.4, IPsec only) all works fine,
because it only routes 10.0.0.X packets through the tunnel anyway.<br>
<br>
Thanks,<br>
Christian<br>