Is there any way to prove that a packet is being sent via the VPN when using netkey? With KLIPS a simple tcpdump would show whether it was IPSec traffic, but with netkey I just get "Host1 --> Host2" - VPN and standard traffic look the same. Thanks Toby