[Openswan Users] Tunnels come up, but not all traffic goesthrough

Michael Richardson mcr at sandelman.ottawa.on.ca
Wed Jun 9 14:47:21 CEST 2004


-----BEGIN PGP SIGNED MESSAGE-----


>>>>> "Matt" == Matt Harrell <matt at mattharrell.net> writes:
    Matt> I should have mentioned that.  I did change all references to
    Matt> ipsec0 to eth1 (external NIC) in my iptables rules.  Is that
    Matt> all there is to it?

  No. You have likely caused yourself a security hole.

  You can not firewall IPsec things with 2.6 kernels, without patches.

- --
]     "Elmo went to the wrong fundraiser" - The Simpson         |  firewalls  [
]   Michael Richardson,    Xelerance Corporation, Ottawa, ON    |net architect[
] mcr at xelerance.com      http://www.sandelman.ottawa.on.ca/mcr/ |device driver[
] panic("Just another Debian GNU/Linux using, kernel hacking, security guy"); [
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)
Comment: Finger me for keys

iQCVAwUBQMdNJ4qHRg3pndX9AQFRowQAnPPzl6MW55lmEZaYJ4hl8J4tG1QcZRWF
ge2ApljtIZ4kfhGqqQD17Lb0Qdv54p4kJr95mBDr0XZMixOLdSl09g7JiFRXnpMp
bOH+kG/YMM2+Ln3EpW4ZNnKngStoS5SvM57a28Tnm4PfmoKm4YlPi/xCuuZWSm1R
yYvwUk3vP7I=
=iAQ3
-----END PGP SIGNATURE-----


More information about the Users mailing list