<!DOCTYPE html PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html>
<head>
</head>
<body bgcolor="#ffffff" text="#000000">
Hi Paul,<br>
<br>
You were right with routing issue - I had to add -I to ping command to
force ping to go out with proper route.<br>
<br>
BR,<br>
Marcin<br>
<br>
Paul Wouters pisze:<br>
<blockquote
id="mid_Pine_LNX_4_64_0809301521440_26790_newtla_xelerance_com"
cite="mid:Pine.LNX.4.64.0809301521440.26790@newtla.xelerance.com"
type="cite">
<blockquote id="StationeryCiteGenerated_2" type="cite">
<pre wrap="">state STATE_QUICK_I1 to state STATE_QUICK_I2
Sep 30 20:43:12 vpn pluto[1869]: "fortigate200a" #2: STATE_QUICK_I2:
sent QI2, IPsec SA established {ESP=>0xefa29e5b <0x6a371cb3
xfrm=3DES_0-HMAC_MD5 NATD=none DPD=none}
</pre>
</blockquote>
<pre wrap=""><!---->
Now phase 2 is up, so it should work. Check NAT rules, routing, ip forwarding
and firewalling.
</pre>
</blockquote>
<br>
<br>
<pre class="moz-signature" cols="72">--
Pozdrawiam serdecznie
Marcin Kowalczyk
System Administrator
Call Center Inter Galactica
ul. Jana Kilinskiego 30, 50-264 Wroclaw, Poland
telefon: +48 71 722 72 91 e-mail: <a class="moz-txt-link-abbreviated" href="mailto:marcin.kowalczyk@ccig.pl">marcin.kowalczyk@ccig.pl</a> </pre>
</body>
</html>