[Openswan Users] pinging one way and not the other

mlist mlist at opendoor.fr
Wed Sep 14 14:53:40 CEST 2005

Norman Rasmussen a écrit :
> Are the gateways the default for all the hosts in the network? i.e. do
> the hosts know that the other network is behind the gateway?
> If these new gateways are not the defaults, you might have to add some
> routes on your default gateways to set the remote network via the
> openswan gateway.
> I'm surprised ping is working the one way...
> By the network size I assume net 1 is 'head office' and net 2 is 'sub
> office'.

yes, but does hat make a difference ?

   And I assume that the net 1 default gateway knows to access
> net 2 via gateway 1.  Also I assume that net 2's default gateway does
> _not_ know to access net 1 via gateway 2 at the moment.  

wrong, both should know how to access each other
Does this all
> sound correct?
> Norman
well, routing is apprently set up when starting ipsec.

after /etc/init.d/ipsec start; i have the following routes:

gw1: via dev eth1 dev eth1  proto kernel  scope link  x.x.x.x dev eth0  proto kernel  scope link  src
default via dev eth1

gw2: dev eth1  proto kernel  scope link  src y.y.y.y dev eth0  proto kernel  scope link  src via dev eth1
default via dev eth1

both are default gateway for their respective subnet

thanks for your answer

thomas Constans
04 78 68 17 34
thomas.constans at opendoor.fr

More information about the Users mailing list