[Openswan Users] Weird problem with tunnel -> Cisco ASA. Openswan 2.4.6.

Radek Antoniuk r.antoniuk at pixel.com.pl
Wed Jun 20 07:57:35 EDT 2007


Hey,

I've a weird problem since I've switched from Cisco PIX to Cisco ASA.
While on PIX everything worked fine, now, I get 'stalling' transfers
using scp through the tunnel.
I think it's connected with DF bit set during the transmission.
The second weird thing is that when I bind with scp to the leftsubnet
interface address on the openswan tunnel endpoint , the scp works
fine.
Just only from the subnet itself it does not.

I've followed a bit with suggestions from here:
http://www.cisco.com/warp/public/105/pmtud_ipfrag.html

But it did not help. I think now everywhere ICMP is enabled.
Any ideas what can be wrong?



Radek


More information about the Users mailing list