[Openswan Users] Easy Routing Question

Tuomo Soini tis at foobar.fi
Sun May 20 16:58:35 EDT 2007


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Paul Wouters wrote:

> You are probably using netkey, not klips, in which case you need to
> exclude your local lan if it overlaps with a tunnel by adding a passthrough
> connection.
> 
> conn passthrough
> 	left=gatewayip
> 	leftsubnet=10.20.108.0/24
> 	right=0.0.0.0
> 	rightsubnet=0.0.0.0/0
> 	auto=route
> 	authby=never
> 	type=passthrough
Shouldn't this be:
conn passlan
	left=internalipoffirewall
	leftsubnet=10.20.108.0/24
	right=0.0.0.0
	rightsubnet=10.20.108.0/24
	auto=route
	authby=never
	type=passthrough

- --
Tuomo Soini <tis at foobar.fi>
Linux and network services
+358 40 5240030
Foobar Oy <http://foobar.fi/>
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.6 (GNU/Linux)

iD8DBQFGULZ7TlrZKzwul1ERAhpLAJ9Zdm4mSuKzOerdIha7cwVYLkLm/gCgnP6Z
FtphOFAGe3P1+uyBk+qnE3I=
=W9Mf
-----END PGP SIGNATURE-----


More information about the Users mailing list