[Openswan Users] NETKEY matching most generic first

Daren Hickman DarenHickman at ruggedcom.com
Thu Aug 20 16:55:55 EDT 2009


I have a netkey IPSEC connection between an openswan router and a Cisco
router.  192.168.100.0/24-----192.168.1.1 ------------->
192.168.2.1----192.168.200.0/24

 

 

The openswan router has a routing table that has  a /32 rout to a host
192.168.200.44

And a route below that is a /24 route  192.168.200.0/24 via the IPSEC
tunnel

 

Traffic going to the host 192.168.200.44 is routed through the tunnel
instead of the unencrypted route that is above it in the


routing table.

 

How do I prevent traffic destined for 192.168.200.44 from entering the
tunnel?

 

Daren Hickman

Field Applications Engineer

Ruggedcom.com

mobile 954-805-4948

desk  954-922-7975 x101

 

 

**************************

NOTICE OF CONFIDENTIALITY:

This e-mail and any attachments may contain confidential and privileged
information. If you are not the intended recipient, please notify the
sender immediately by return e-mail and delete this e-mail and any
copies. Any dissemination or use of this information by a person other
than the intended recipient is unauthorized and may be illegal.

**************************

 

 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20090820/25b81bca/attachment-0001.html 


More information about the Users mailing list