[Openswan Users] Openswan & Linksys BEFSX41 VPN Router

Peter McGill petermcgill at goco.net
Mon Jan 21 13:54:45 EST 2008

It depends what you want to do.
If you want to route additional traffic through the tunnel, you must add additional
conn and subnet definitions.
If your just talking plain routing in your lan or whatever, no ipsec involved, then
read the man pages for ip route. If your looking for advanced routing and/or QoS,
then it gets quite complicated. Perhaps you could elaborate more what your trying
to do? The more detail you provide the easier it will be to answer. If your just looking
to learn in general then consult the documentation howtos, man pages, etc...
To learn iptables, there is good documentation to get you started at the iptables
main site, netfilter.org. There is good links for advanced routing at:
Peter McGill


From: richard garcia [mailto:splender99 at gmail.com] 
Sent: January 21, 2008 1:30 PM
To: petermcgill at goco.net
Cc: users at openswan.org
Subject: Re: [Openswan Users] Openswan & Linksys BEFSX41 VPN Router

Thanks Peter, I already have a succesful VPN connection with Linux OpenSWAN & Linksys BEFSX41 router using the configuration you
listed below, linksys has similar settings.  However, I'm not sure if its okey with you guys to ask the question how can I route the
trafic in Linux, I was testing with routes and iptables but im not that good with Linux routing. 

On Jan 21, 2008 10:45 PM, Peter McGill <petermcgill at goco.net> wrote:

To have traffic flow to/from and you need to have subnets in openswan for them.
conn <whatever you have>
    leftsourceip= <> 
Don't know the linksys settings to match this, but the linksys will also need the left/right subnets set in the ipsec settings. 
Also, the hosts in will need to know to route traffic for to <> ,
either by having <>  as the default gateway for the subnet or by putting a static route on the default gateway to
forward traffic 
for to <> . 
Peter McGill


From: users-bounces at openswan.org [mailto:users-bounces at openswan.org  <mailto:users-bounces at openswan.org> ] On Behalf Of richard
Sent: January 19, 2008 10:16 AM
To: users at openswan.org
Subject: [Openswan Users] Openswan & Linksys BEFSX41 VPN Router 

Hi, I'm new to openswan, I was able to establish a connection using Ubuntu Openswan and a Linksys BEFSX41 VPN Router.   Below is the
layout of the setup
                                          <>          WAN    
                                        ----------------------->    OPENSWAN  ------------------------->  BEFSX41  --------------------------------->  <> (Windows)
>From <> , I can ping <> .  However I need to connect to
<>, ping to this host is request timeout. From <> , cannot ping
any pcs in <> .
Im not very good at iptables and routing in Linux, can anyone help me?

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20080121/48997819/attachment.html 

More information about the Users mailing list