[Openswan Users] After connecting to VPN server , my XP clients cannot ping to the VPN eth0 interfaces

John Joseph jjk_saji at yahoo.com
Sun Nov 12 04:17:37 EST 2006


Hi 
   I have some basic questions , I am trying out vpn
connection for testing purpose and exploring the
concepts 
I have two machines
    One VPN server which haveonly one iterface  eth0
as 192.168.242.140 
    Another XP client with eth0 as 192.168.242.135 
    I had configure vps server , so that XP clients
get the IP adrresses in the range 
192.168.30.40 to 192.168.20.254
before connecting to VPN  my XP clients can ping the
VPN server , after getting connected to the VPN , my
XP clients cannot ping to the VPN server .

*********************************************************
my xp client shows 

C:\Documents and Settings\user>route print
===========================================================================
Interface List
0x1 ........................... MS TCP Loopback
interface
0x2 ...00 0c 29 65 aa 65 ...... AMD PCNET Family PCI
Ethernet Adapter - Packet S
cheduler Miniport
0xa0004 ...00 53 45 00 00 00 ...... WAN (PPP/SLIP)
Interface
===========================================================================
===========================================================================
Active Routes:
Network Destination        Netmask          Gateway   
   Interface  Metric
          0.0.0.0          0.0.0.0    192.168.30.40  
192.168.30.40       1
        127.0.0.0        255.0.0.0        127.0.0.1   
   127.0.0.1       1
    192.168.30.40  255.255.255.255        127.0.0.1   
   127.0.0.1       50
   192.168.30.255  255.255.255.255    192.168.30.40  
192.168.30.40       50
    192.168.242.0    255.255.255.0  192.168.242.135 
192.168.242.135      10
  192.168.242.135  255.255.255.255        127.0.0.1   
   127.0.0.1       10
  192.168.242.140  255.255.255.255  192.168.242.135 
192.168.242.135      10
  192.168.242.255  255.255.255.255  192.168.242.135 
192.168.242.135      10
        224.0.0.0        240.0.0.0  192.168.242.135 
192.168.242.135      10
        224.0.0.0        240.0.0.0    192.168.30.40  
192.168.30.40       1
  255.255.255.255  255.255.255.255    192.168.30.40  
192.168.30.40       1
  255.255.255.255  255.255.255.255  192.168.242.135 
192.168.242.135      1
Default Gateway:     192.168.30.40
===========================================================================

C:\Documents and Settings\user>ipconfig

Windows IP Configuration


Ethernet adapter Local Area Connection:

        Connection-specific DNS Suffix  . :
localdomain
        IP Address. . . . . . . . . . . . :
192.168.242.135
        Subnet Mask . . . . . . . . . . . :
255.255.255.0
        Default Gateway . . . . . . . . . :

PPP adapter VPN-VoIP:

        Connection-specific DNS Suffix  . :
        IP Address. . . . . . . . . . . . :
192.168.30.40
        Subnet Mask . . . . . . . . . . . :
255.255.255.255
        Default Gateway . . . . . . . . . :
192.168.30.40
***********************************************************


On VPN server I have the following setup 
cat /etc/ipsec.conf
version 2.0
config setup
        interfaces=%defaultroute
        klipsdebug=none
        plutodebug=none
        nat_traversal=yes
       
virtual_private=%v4:10.0.0.0/8,%v4:172.16.0.0/12

conn %default
        keyingtries=3
        compress=yes
        disablearrivalcheck=no
        authby=secret
        type=tunnel
        keyexchange=ike
        ikelifetime=240m
        keylife=60m

conn l2tp-psk
        pfs=no
        left=192.168.242.140
        leftnexthop=192.168.242.1
        leftprotoport=17/1701
        right=%any
        rightprotoport=17/1701
        rightsubnet=vhost:%no,%priv
        auto=add
#Disable Opportunistic Encryption
include /etc/ipsec.d/examples/no_oe.conf




Send instant messages to your online friends
http://uk.messenger.yahoo.com 

Send instant messages to your online friends http://uk.messenger.yahoo.com 


More information about the Users mailing list