[Openswan Users] subnet-to-subnet VPN, doesn't route how I want

Simon Detheridge simon at widgit.com
Mon Nov 12 05:29:13 EST 2007


Quoting Paul Wouters <paul at xelerance.com>:

> On Sun, 11 Nov 2007, Simon Detheridge wrote:
>
>> The connection works fine, apart from one thing. All the machines on
>> my local network can ping machines on the remote network, with the
>> exception of the server itself. If I try ping 10.0.0.5, I get no
>> replies back. However, if I do a ping 10.0.0.5 -I 192.168.2.1, forcing
>> 'ping' to bind to the LAN address (instead of the internet address, I
>> guess) it works.
>
> leftsourceip-192.168.2.1

Thankyou, that's exactly what I want. It works. Couldn't find it in  
'man ipsec.conf' for some reason.

Quoting Chris Patch <chrispatch at intrstar.net>:

> On a Sonicwall you can set up a second subnet for the same tunnel.  I
> had to do this once, it works.  I think the button you are after is "add
> subnet" or a"dd network"
> On the openswan side you just make to tunnels.

I couldn't find this button on my Sonicwall, but the leftsourceip  
directive works fine for me.

Thanks,
Simon

-- 
Simon Detheridge
SEN Developer, Widgit Software



----------------------------------------------------------------
This message was sent using IMP, the Internet Messaging Program.



CONFIDENTIALITY NOTICE:
This email and any attachments are for the exclusive and confidential use of the intended recipient.  If you are not the intended recipient, please do not read, distribute or take action in reliance upon this message. If you have received this in error, please notify us immediately by return email and promptly delete this message and its attachments from your computer system.

Logotron is a limited company registered in England, number 04113866. The registered office is Logotron Ltd, 124 Cambridge Science Park, Milton Road, Cambridge, CB4 0ZS.


More information about the Users mailing list