[Openswan dev] Re: Openswan 2.4.0dr9 multiple defaultroute patch

mcr at xelerance.com mcr at xelerance.com
Mon Aug 15 23:00:46 CEST 2005


-----BEGIN PGP SIGNED MESSAGE-----


>>>>> "David" == David McCullough <davidm at snapgear.com> writes:
    >> Do you have different IPs on the different interfaces?

    David> Yes.

    >> Do you use %defaultroute in your conns? Do the ESP packets come
    >> out with the right outer IP?

    David> Yes, and the packets come out the interface that is providing
    David> the first default route with the appropriate IP's.

  So, you mean that with the %defaultroute, you only get to use one
defaultroute, and one IP, and one DSL link?

  And if you had a more specific route to that destination, via another
IP, it wouldn't work, I imagine? 
  (that's what we want to fix in pluto.. You get %defaultroute for free
once you actually use the routing table...)

- -- 
] Michael Richardson          Xelerance Corporation, Ottawa, ON |  firewalls  [
] mcr @ xelerance.com           Now doing IPsec training, see   |net architect[
] http://www.sandelman.ca/mcr/    www.xelerance.com/training/   |device driver[
]                    I'm a dad: http://www.sandelman.ca/lrmr/                 [
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)
Comment: Finger me for keys

iQCVAwUBQwFIy4qHRg3pndX9AQFYTgQAnBUuVuhpBHu/EWofdv9pPwOD0cHoP9cB
C2mTdaqoeia/dxMUAlacrQX5BuKMeKxp5l6CCOFDD9VMfM9+vYhe5fZP3S2MgaeS
YC2ltLCiKW42kHOAZQFNDpxcLNk8GIZGsCjHMQkpMZ1i1hba5NEWYGkIeVSQhHKi
VDF3OksRNug=
=oakO
-----END PGP SIGNATURE-----


More information about the Dev mailing list