[Openswan Users] Openswan AND fortigate 60b Vs Iptables

Paul Wouters paul at xelerance.com
Wed Jul 7 01:22:43 EDT 2010

On Tue, 6 Jul 2010, Ing. Rodrigo Fernandez wrote:

> Im again I have read the information of the iproute2 but I didn't get it the
> help means that I need to stablish a "static route?

You should not need/require any manual static routes.

> Or how can i handle it? The reason that I want to ping in my gateway its
> cause sometimes the tunnel goes down and im writing a very simple
> "pingscript" who checks the tunnel up and if the tunnels goes down make all
> the ways to reestablish the connection. In the previous thread I sent my set
> up of mi iptables and a member of the list, gently suggested the iproute2
> what do you think about my "example"? its correct or its more complicated?

If you want to "check" your tunnel, look into "dpd". See "man ipsec.conf" and
look for dpdaction=


More information about the Users mailing list