[Openswan Users] Samba not working over IPsec

Paul Wouters paul at xelerance.com
Sun Nov 27 05:58:40 CET 2005


On Sat, 26 Nov 2005, Philip Pemberton wrote:

>   I've managed to get my VPN to behave itself (after switching to another VPN
> client). I've also managed to get Samba to work cross-subnet for browsing.
> The problem is, although I can see all the machines and shares on the
> network, it takes around five minutes for the laptop to open a share on any
> machine on the 10.0.0.0/16 subnet. Once a share has been opened, access to
> the 10.0.0.0/16 subnet becomes pretty quick.
>   Anything on the 10.1.x.x subnet (VPN) is fine, and opens pretty quickly.

>   Linux, 2.6.10 kernel, Openswan 2.4.4, KLIPS, IP 10.0.0.1 on eth0 and
>   10.1.0.1 on eth1, netmask 255.255.0.0 (same for both IPs)

Does fragicmp=no make a difference? Other issues might be packet size and
fragmentation. Try setting a lower mtu on the samba server and see if
that helps?

Paul


More information about the Users mailing list