[Openswan Users] Ping to subnets dont work

Sebastian Rumpf sebastian.rumpf at brandl-systemhaus.de
Fri Feb 11 07:05:30 EST 2011


Hi @ all

I have a Gateway to Gateway setup (to test) and cant ping form the GW's tot he subnets.

                                         10.0.0.1                       10.0.0.2
                                        --------------                ---------------
192.168.1.0/24------|Gateway1|=====|GateWay2|------192.168.5.0/24
                                       192.168.1.99               192.168.5.16


Both of them are Debian Systems (100% Identical [VMware Clone])

Here's what the config looks like :


conn vpn
        type=tunnel
        left=10.0.0.2
        leftsubnet=192.168.5.0/24
        leftnexthop=10.0.0.1
        right=10.0.0.1
        rightsubnet=192.168.1.0/24
        rightnexthop=10.0.0.2
        keyexchange=ike
        auth=esp
        auto=add
        authby=secret


My problem is, that I cant ping from GW1 to 192.168.5.X (I know the machine exists) but I can ping the other Gateway (192.168.5.16)
When I try pinging from Gw2 to 192.168.1.X it's the same thing.

Netstat -nr tells me this:

Kernel IP routing table
Destination     Gateway         Genmask         Flags   MSS Window  irtt Iface
192.168.5.0     0.0.0.0         255.255.255.0   U         0 0          0 eth0
192.168.1.0     0.0.0.0         255.255.255.0   U         0 0          0 eth1
10.0.0.0        0.0.0.0         255.255.0.0     U         0 0          0 eth1
0.0.0.0         192.168.5.1     0.0.0.0         UG        0 0          0 eth0



##################  GW2  ###############

Kernel IP routing table
Destination     Gateway         Genmask         Flags   MSS Window  irtt Iface
192.168.5.0     0.0.0.0         255.255.255.0   U         0 0          0 eth1
192.168.1.0     0.0.0.0         255.255.255.0   U         0 0          0 eth0
10.0.0.0        0.0.0.0         255.255.0.0     U         0 0          0 eth1
0.0.0.0         192.168.1.6     0.0.0.0         UG        0 0          0 eth0




Could anyone of you please be so kind and help me ??
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20110211/716ae5e6/attachment-0001.html 


More information about the Users mailing list