[Openswan Users] OpenSWAN on OpenWRT not working

Nels Lindquist nlindq at maei.ca
Thu Feb 15 12:03:31 EST 2007


Nels Lindquist wrote:

> Anyway, I'm trying to use the OpenSWAN package distributed with OpenWRT
> WhiteRussian RC6, connecting to a standard Linux installation of
> OpenSWAN on the other end.
> 
> Everything looks like it's configured properly--though I can't run
> "ipsec verify" due to the lack of exec support.
> 
> Nevertheless, certs are loaded, tunnels come up, routes are created, and
>  then... nothing.  No packets are sent out over the ipsec0 interface at
> all.  Using tcpdump I can see them come in to the internal interface,
> but nothing goes out at all.
> 
> I tried eliminating the firewall as a potential blocker by flushing all
> the rules, to no avail. ip_forward is set.
> 
> Has anyone gotten this configuration to work?
> 
> I'm hoping I'm missing something silly and obvious.  I've attached a barf.

Just a quick update.  On the same hardware, upgrading to WhiteRussian
0.9 and using the same configuration (firewall, OpenSWAN, etc.)
everything works perfectly.

I'm still at a loss as to why this is an issue on RC6. :-(

----
Nels Lindquist


More information about the Users mailing list