[Openswan Users] Help:How to add messages to show the tunnel's status?

Paul Wouters paul at xtdnet.nl
Mon Feb 16 12:35:22 CET 2004


On Mon, 16 Feb 2004, swcims wrote:

>    Now I want to add some messages to show whether the tunnel is build up or not,then users don't need to ping or open " /var/log/secure".

When using klips, use 'ipsec eroute'. You can make the file 
/proc/net/ipsec_eroute world or group readable.

For the native stack you have to call 'setkey -D' and/or 'setkey -F'. It
probably needs to have root privs, you might need to setup a cronjob every
minute to dump it somewhere readable (like on a webpage)

> 	Also,in manual-keying,I don't know absolutely how to add these messages to show the tunnel status.How to overcome this problem?

You shouldn't be using manual keying.

Paul



More information about the Users mailing list