[Openswan Users] Tunnel up but cannot ping between Openswan and CISCO PIX
Alfonso Viso
alfonso.viso at selftrade.com
Mon Dec 22 06:04:19 EST 2008
Hello all,
We have configured a tunnel ipsec between Openswan Server and Cisco Pix. The tunnel is established ok and the side of pix can connect to our intranet but the pings doesn't arrive to the computer of side client.
my ipsec.conf is:
version 2.0
config setup
nat_traversal=yes
forwardcontrol=yes
virtual_private=%v4:10.0.0.0/8,%v4:172.16.0.0/12,%v4:192.168.0.0/16
conn %default
ikelifetime=60m
keylife=20m
rekeymargin=3m
keyingtries=1
conn pix-barcelona
type=tunnel
authby=secret
left=<ip_public_Openswan>
leftsubnet=10.105.0.0/16
right=%any
rightsubnet=10.105.228.0/22
esp=3des-md5
keyexchange=ike
pfs=yes
auto=add
spi=0x0
when i ping the messages is :
[-]# ping 10.105.228.20
PING 10.105.228.20 (10.105.228.20) 56(84) bytes of data.
>From <ip_public_Openswan> icmp_seq=0 Destination Host Unreachable
>From <ip_public_Openswan> icmp_seq=1 Destination Host Unreachable
>From <ip_public_Openswan> icmp_seq=2 Destination Host Unreachable
Can Anybody help us ?
thanks in advanced
Alfonso Viso Puerta
IT Department
Self Trade Bank by Boursorama
___________________________________
Ce message contient des informations confidentielles ou appartenant à
Boursorama et est établi à l'intention exclusive de ses destinataires. Toute
divulgation, utilisation, diffusion ou reproduction (totale ou partielle) de ce
message, ou des informations qu'il contient, doit être préalablement
autorisée. Tout message électronique est susceptible d'altération et son
intégrité ne peut être assurée. Boursorama décline toute responsabilité au
titre de ce message s'il a été modifié ou falsifié. Si vous n'êtes pas
destinataire de ce message, merci de le détruire immédiatement et d'avertir
l'expéditeur de l'erreur de distribution et de la destruction du message.
___________________________________
This e-mail contains confidential information or information belonging to
Boursorama and is intended solely for the addressees. The unauthorised
disclosure, use, dissemination or copying (either whole or partial) of this
e-mail, or any information it contains, is prohibited. E-mails are susceptible
to alteration and their integrity cannot be guaranteed. Boursorama shall not be
liable for this e-mail if modified or falsified. If you are not the intended
recipient of this e-mail, please delete it immediately from your system and
notify the sender of the wrong delivery and the mail deletion.
___________________________________
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20081222/6f286740/attachment.html
More information about the Users
mailing list