[Openswan Users] linux 2.6 remote network routes ??

Nate Carlson natecars at natecarlson.com
Wed Aug 4 18:14:00 CEST 2004


On Wed, 4 Aug 2004, Colin Johnston wrote:
> After some help on the irc channel I managed to get vpn client > gateway
> remote lan ip working ok. However ...
>
> client is mac osx vpn tracker.                      195.248.116.90
> Server is linux 2.6        ipsec auto 2.2.0dr2      212.219.11.97

<...>

> The problem is the following, once the VPN is live i can ping
> 212.219.10.135 (which is the remote wan side of the vpn server) from
> 195.248.116.90 osx client.
>
> A static host route is automatically added on gateway
> 195.248.116.90  212.219.11.102  255.255.255.255 UGH       0 0          0
> eth1
>
> However this(212.219.10.135) is the only host I can ping on the
> 212.219.10.128/25 lan and hence office machines cannot be contacted etc.

If you do a tcpdump of the line behind your OS X box, do you see the
encrypted traffic going out, or do you see cleartext attempts to reach the
box?

Do you have IP forwarding and all that fun stuff enabled on the Linux box?

Have you double-checked your iptables rules to make sure they allow the
forwarding?

------------------------------------------------------------------------
| nate carlson | natecars at natecarlson.com | http://www.natecarlson.com |
|       depriving some poor village of its idiot since 1981            |
------------------------------------------------------------------------


More information about the Users mailing list