[Openswan Users] Confirm NetKey Traffic

Jacco de Leeuw jacco2 at dds.nl
Wed Nov 2 14:05:59 CET 2005


Toby Chamberlain wrote:

> Is there any way to prove that a packet is being sent via the VPN when 
> using netkey? With KLIPS a simple tcpdump would show whether it was 
> IPSec traffic, but with netkey I just get "Host1 --> Host2" - VPN and 
> standard traffic look the same.

Use a separate system between Host1 and Host2 to listen in on the traffic:

Host1 --> Host2
        ^
        |
        |
       Host3

This is the most reliable method, even with KLIPS.

Jacco
-- 
Jacco de Leeuw                         mailto:jacco2 at dds.nl
Zaandam, The Netherlands           http://www.jacco2.dds.nl
                     Mosquitos suck


More information about the Users mailing list