[Openswan Users] not quite there - no routes

Mads Rasmussen mads at grupof.com.br
Mon Jan 24 18:03:05 CET 2005


Mads Rasmussen escreveu:

> Thanks Paul, got me further but didn't quite fix the problem

I had configured compression to "yes" on the peer, turning it off solved 
the thing

I now have another problem, I cannot ping anything. I tried modifying 
the conf to enable
"rightsubnet=10.30.0.30/32" and setup a virtual IP at the peer with SSH 
sentinel to "10.30.0.30/255.255.255.0"

Now win2k shows the route, but I still cannot ping

Regards,

Mads

conn %default
        authby=rsasig
        left=pernambuco.dyndns.org
        leftcert=pernambuco-gw.pem
        leftsubnet=10.30.0.0/24
        rightrsasigkey=%cert
        pfs=yes
        auto=add

conn road
        right=%any
        rightsubnet=10.30.0.30/32
        leftid="/C=BR/ST=Sao Paulo/O=Grupo F 
Arquitetura/OU=TI/CN=pernambuco.dy\
ndns.org"
        rightid="/C=BR/O=Grupo F Arquitetura/OU=TI/CN=remote at grupof.com.br"





-- 
No virus found in this outgoing message.
Checked by AVG Anti-Virus.
Version: 7.0.300 / Virus Database: 265.7.2 - Release Date: 21/1/2005



More information about the Users mailing list