[Openswan Users] Bridging

Paul Wouters paul at xelerance.com
Fri Jul 3 17:28:20 EDT 2009


On Fri, 3 Jul 2009, Beau Sapach wrote:

> (presumably) Cisco endpoint.  I'm hoping to simply add the ipsec0
> interface to the bridge using the brctl utility the same way I add the
> eth0 and eth1 interfaces.  I'm then hoping to control the flow of
> traffic over the ipsec0 interface using ebtables.

No, you should use something like interfaces="ipsec0=br0"

> I've been trying to get a working model of this scenario running in
> vmware workstation with little success.

note that vmware brings in its own strangeness into the networking stack.

> Also if you know of any problems using Openswan in virtual machines,
> any help there would be appreciated...  So far I constantly have pluto
> crashing on the end of the tunnel that does NOT initiate the
> connection, at least for the initial connection attempt.
>
> I have been working with a 2.6 kernel and Openswan 2.6.22.

If openswan 2.6.22 crashes on you, please use dumpdir= and get us a gdb
trace.

Paul


More information about the Users mailing list