[Openswan Users] leftsubnet parameter question - which network definition

Paul Wouters paul at xelerance.com
Sat Feb 21 15:41:39 EST 2009


On Fri, 20 Feb 2009, Torsten Krah wrote:

> Subject: [Openswan Users] leftsubnet parameter question - which network
>     definition
> 
> I've got some question about which subnet i have to write there.
>
> Lets say my real left net A is:  192.168.1.0/24
>
> The tunnel however is going to be built with a NETMAPed net 10.1.10.0/24.
>
> What have i have to write there?
> The already via NETMAP or SNAT&DNAT mapped net "10.1.10.0/24" or the REAL one
> 192.168.1.0/24?
>
> netkey + racoon requires to write the already natted one - openswan klips too?

I don't understand the question.
leftsubnet= should be the range you want the other side to see the packets
coming from. If the other side expects packets from 10.1.10.0/24 to arrive
via the tunnel, ten that is what leftsubnet should be.

Paul


More information about the Users mailing list