[Openswan Users] how can i exclude multiple subnets from one side

Ted Kaczmarek tedkaz at optonline.net
Sat Sep 18 10:17:16 CEST 2004


On Sat, 2004-09-18 at 08:01, Abdul-Wahid Paterson wrote:
> Hi,
> 
> I have a big network with many different class C's, on one of my
> remote sites I want to be able to have...
> 
> 
> leftsubnet=192.168.0.0/255.255.0.0
> 
> but I want to be able to exlude 3 subnets from this...e.g.
> 
> 192.168.15.0/255.255.255.0
> 192.168.47.0/255.255.255/0
> and 
> 192.168.55.0/255.255.255.0
> 
> is there any way I can exlude mutliple subnets ?

> 
> 
> AW

You could use iptables to just drop the packets, you may also want to
log them as well. Otherwise you may have to create separate tunnels. 
If their is a way to do such exclusions I am interested as well :-) 

Ted



More information about the Users mailing list