[Openswan Users] Question about routing

Paul Wouters paul at xelerance.com
Wed Mar 8 16:45:19 CET 2006


On Tue, 7 Mar 2006, Ruben CL wrote:

> If there are a static route between 2 hosts and also there is a tunnel between
> them,
> the comunication between them is encrypted when the tunnel is up and
> unencrypted when the tunnel is down?? Or always they comunicate, they start
> the tunnel??

If both have 'auto=start', then no plaintext packets are allowed to flow, even
if the tunnel is down. If the tunnel is not loaded (auto=ignore, or manually deleted
with ipsec auto --delete connname) then cleartext packets are allowed to travel
between the hosts.

Paul
-- 
Building and integrating Virtual Private Networks with Openswan:
http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155


More information about the Users mailing list