[Openswan Users] Could I expect this to work in my LAN

Paul Wouters paul at xelerance.com
Thu Feb 8 15:27:29 EST 2007


On Thu, 8 Feb 2007, Brett Curtis wrote:

> Subject: [Openswan Users] Could I expect this to work in my LAN

> conn portland-tenn
>        type=tunnel
>        authby=rsasig
>        left=172.17.187.225
>        leftsubnet=172.19.187.0/24

if the 17 vs 19 is not a typo, then this can work

>        leftid=@tenn.remote.net
>        leftrsasigkey=0sAQOdXXXXXXXXXXXXXXXX
>        leftnexthop=%defaultroute
>        right=172.17.187.1
>        rightsubnet=172.17.187.0/24

but this cannot work. You can't have a rightsubnet behind right.
a subnet means you are a gateway for that subnet, so your outer ip
cannot be part of that subnet.

Paul
-- 
Building and integrating Virtual Private Networks with Openswan:
http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155


More information about the Users mailing list