[Openswan Users] Problems with multiple VPN tunnels and RoadWarrios

Andrej Trobentar andrej.trobentar at rikom.si
Wed Sep 7 11:09:59 CEST 2005


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hello Norman and list,

Norman Rasmussen wrote:
> Maybe try moving the rikom-krgora-lan_rikom config above the
> roadwarior-l2tpd? I have no idea if this would work (i.e. I don't know
> how ipsec matches connections), but this is something I would try.

Done that - problem still exists.

> Does it matter which order you bring the connections up in?  If the
> roadwarrior re-connects after the static tunnel is up what happens?

If there's only a roadwarrior connected, everything works as it should.
As soon as I bring the static tunnel up the following happens :

- - sometimes (not always) the roadwarrior disconnects
- - if it remains connected the roadwarrior can ping hosts in the internal
LAN, but http or ssh doesn't work as it should (with tcpdump I can see
the activity from the roadwarrior, but in the middle of the ssh session
everything stops, if I then ping the host I get the reply ; same with http)
- - the static tunnel works without problems and doesn't disconnects
- - if I reconnect with the roadwarior, ping again works, but http or ssh
doesn't (see the explanation above)


I have the feeling that this has something to do with large amount of
data - if I type "who am i" in a ssh session I get the data, but as soon
as I type "ps ax" everything stops. Any ideas?


- --
Many thanks for your help,

	Andrej.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFDHqBXVd/NU2yFfAoRAvuHAJ4ihbiZdxnQUdpf25DLUm2hiE/I5QCg4+5d
fBKC7U71jBsIK8r8RJwlXRg=
=5VX/
-----END PGP SIGNATURE-----


More information about the Users mailing list