[Openswan Users] net-to-net with multiple subnets, unrouted

Paul Wouters paul at xelerance.com
Tue Nov 23 10:31:22 EST 2010


On Tue, 23 Nov 2010, Paul Overton wrote:

> Subject: RE: [Openswan Users] net-to-net with multiple subnets, unrouted
> 
> Paul,
>
> Does the command below work with KLIPS as well as NETKEY?

Yes, the leftsourceip= option works with all stacks.

Paul

> Regards Paul
>
>
> Because your gateway automatically uses its "nearest IP" to talk to the
> remote
> subnet, which in your case is your public ip. This public ip is not part
> of the
> tunnel, so it fails. Add leftsourceip=YourInternalIP and it will create
> the
> proper route for you to use its internal IP to talk to the remote
> subnet.
>
> Paul
> _______________________________________________
> Users at openswan.org
> http://lists.openswan.org/mailman/listinfo/users
> Micropayments: https://flattr.com/thing/38387/IPsec-for-Linux-made-easy
> Building and Integrating Virtual Private Networks with Openswan:
> http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155
>
> -- 
> This message has been scanned for viruses and
> dangerous content by MailScanner, and is
> believed to be clean.
>
>
> -- 
> This message has been scanned for viruses and
> dangerous content by Trusted Management Limited, and is
> believed to be clean.
>


More information about the Users mailing list