[Openswan Users] OS / Netkey multiple tunnels

Paul Wouters paul at xelerance.com
Mon Oct 19 19:31:17 EDT 2009


On Mon, 19 Oct 2009, Goffe, Don wrote:

> I have confirmed that this is an OSwan issue. By using only one
> connection (commenting out the other) in my ipsec.conf table I can
> connect as either "dgoffe" or "greg". Having two closely configured

It's not an "issue".

> connections where the left, leftsubnet, leftnexthop and right are the
> same except for the rightsubnet 10.3.15.0/24 on one and 10.3.16.0/24 on
> the other causes swan to choose the incorrect connection name and
> generate the wrong hash.  See last email for config files.

That should just bring both of the tunnels up. The negotiations might
flip name during phase1, but will pick their proper names during phase2.

Paul


More information about the Users mailing list