[Openswan Users] Tunnel working "one way only"

Antonio Ávila elessarvrp at gmail.com
Tue Apr 3 04:41:18 EDT 2007


Well I don't know why but in my first post, is some test is missing
so, I'm going to paste here again, sorry:

...
> Ok, well so with this escenary working having a look to /var/log/auth.log
> I can see how the tunnel is stablished between the two boxes, the first
> phase is succesful and the second is
> succesful too. And once stablished I made the first test, pinging from
> 10.1.2.3 to 192.168.1.1
>

it continues like this:

Well so now I can see (via tcpdump) the esp packets leaving the left box,
and I can see them (via tcpdump also) arriving to the right box, and if I
made a tcpdump to the lan interface now I can see clearly the packets
without the encryption, that is a icmp echo request from 10.1.2.3 to
192.168.1.1 and a icmp echo reply from 192.168.1.1 to 10.1.2.3. But if I
follow now the icmp echo response, I can see it arriving to the right box
but then it dissapears... I have tried to make directly a ping from the
right subnet and the same result ( I have tested also pinging from the right
subnet to an unknown ip, and I can follow through the right box and see them
in the left box).

Which should be my next move?

Thanks to all
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20070403/c43994d0/attachment.html 


More information about the Users mailing list