[Openswan Users] Host-to-Host tunnel problem

Paul Wouters paul at xelerance.com
Mon Aug 6 10:30:55 EDT 2007


On Mon, 6 Aug 2007, Ian Brown wrote:

> now my /etc/ipsec.conf is this (on both machines):
> conn west-east
> 	left=200.100.150.122
> 	leftsubnet=200.100.150.112/28
> 	right=200.100.150.108
>  	rightsubnet=200.100.150.96/28

left cannot be part of leftsubnet. The same for right. How will
you reach 200.100.150.122 when you will have to build a tunnel
to 200.100.150.112/28 to reach it, for which you first need to
reach 200.100.150.122 to setup the tunnel .... loop.

Paul
-- 
Building and integrating Virtual Private Networks with Openswan:
http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155


More information about the Users mailing list