[Openswan Users] Subnet to Subnet problem [solved]

Benjamin Minshall minshall at intellicon.biz
Fri Nov 7 19:37:58 EST 2008


Benjamin Minshall wrote:
> Hello,
> 
> I have an openswan tunnel almost working between two linux gateways.  Kernels are 2.6.27.x.
> 
> ~# ipsec --version
> Linux Openswan U2.4.6/K2.6.27.2 (netkey)
> 
> 
> A |--- priv ---| G1 |--- internet ---| G2 |--- priv ---| B
> 
> I can ping from host A to the private interface of G2 just fine, however pings from A to B do not make it.  Pings from G2 to B work.  I used tcpdump to confirm that the ESP packets are arriving at the public interface of G2, however no packets are leaving the private interface of G2; as though they are lost at G2.
> 
> Do anyone have any suggestions for fixes or further troubleshooting?  Thanks.
> _______________________________________________
> Users at openswan.org
> http://lists.openswan.org/mailman/listinfo/users
> Building and Integrating Virtual Private Networks with Openswan: 
> http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155
> 

I solved the problem by locating an iptables FORWARD rule that was 
accidentally blocking traffic on the gateway machines.  Thanks.


More information about the Users mailing list