[Openswan Users] ping: ok, ssh: connection timed out

Fabio fabio.marcone at duet.it
Tue Mar 7 10:25:38 CET 2006


Hi to all!

I'm testing openswan on debian sarge and kernel 2.6.

I'm using x509 certificates for autentication.

Situation:
        pc1 <---> GW1 <---> modem/router1 <---> modem/router2 <---> GW2 <---> 
pc2

SA is established correctly. modem/routers always do source nat.

case 1: GW1 and GW2 do not snat outgoing packets from WAN interface
        - pc1 and pc2 communicate correctly using ping and ssh

case 2: GW1 and GW2 do source nat on outgoing packets from WAN interface
        - pc1 and pc2 communicate correctly using ping
        - pc1 and pc2 can't communicate using ssh (VERY STRANGE) because 
connection 
timed out (using tcpdump I verified that packets arrive correcly on both pcs)

Why? 

anyone can help me?

very very thanks,
Fabio
-- 

Dott. Fabio Marcone

2T srl
Telefono	                           +39 - 0871- 540154
Fax		                           +39 - 0871- 571594
Email	                           fabio.marcone at duet.it	
Indirizzo	                           Viale B. Croce 573
                                           66013 Chieti Scalo (CH)
GNU/Linux registered user  #400424


More information about the Users mailing list