[Openswan Users] ipsec vpn fallback

Paul Wouters paul at xelerance.com
Fri Jun 3 19:06:08 CEST 2005


On Fri, 3 Jun 2005, Ming-Ching Tiew wrote:

> OK my problem is fixed. The reason was that, since I have two internet links,
> the IKE negotiation could be sent via the wrong interface, and thereby unable
> to complete negotiation.
>
> What I did is then to force the UDP port 500 IKE to go through the "surviving"
> network interface card, the IKE negotiation will complete very quickly.

How did you do this? Would you mind sharing your rules/scripts on what you did
to make this work?

Paul


More information about the Users mailing list