[Openswan Users] IPSEC tunnelling between OPENSWAN and router CISCO 1900: STATE_QUICK_I1 problem

Willie Gillespie wgillespie+openswan at es2eng.com
Thu Feb 10 13:40:11 EST 2011


On 2/10/2011 6:44 AM, Maurice SELLIN wrote:
> my network configuration
> =====================
> 10.0.0.1 <--> 100.180.26.105 <==========> 100.180.26.106 <--> 11.0.0.1
> the linux station has 2 interfaces: 10.0.0.1 and 100.189.26.105
> the cisco router has 2 interfaces: 100.189.26.106 and 11.0.0.1

> rightsubnet=11.0.0.0/24
> rightsourceip=11.0.0.1

This has nothing to do with the VPN, but do you actually control 
11.0.0.0/24?  It's not a private IP range, but you'd only see it cause 
troubles for you if someone in your network tries to connect to the 
_real_ 11.0.0.0/24 out there.

It's probably not a big rush, but it'd be better in the long run for you 
to migrate and use one of the private IP ranges.

Willie


More information about the Users mailing list