[Openswan Users] Old user having troubles with new techniques

Willie Gillespie wgillespie+openswan at es2eng.com
Tue Jun 29 17:15:49 EDT 2010


Larry Brown wrote:
> On Tue, 2010-06-29 at 14:47 -0600, Willie Gillespie wrote:
> 
>> This still baffles me.  Out of curiosity, can you ping 172.16.0.1 or do 
>> those disappear as well?
> 
> They disappear as well.  No ping response is seen.  I can see them
> coming in and see them decrypted but no response back out eth0 in any
> form (encrypted or not).

Aha!  Maybe this is it.  In your first message, you had:

config setup
	nat_traversal=yes
	virtual_private=%v4:10.0.0.0/8,%v4:172.16.0.0/24
	oe=off
	protostack=netkey

Does it work if you add %v4:192.168.0.0/16 (or 192.168.2.0/24) to 
virtual_private?


More information about the Users mailing list