[Openswan Users] Openswan finally refuses connection during or after phase 2

Willie Gillespie wgillespie+openswan at es2eng.com
Sun Oct 30 18:46:45 EDT 2011

On 10/29/2011 1:21 PM, thomas4437 at gmx.de wrote:
> iPod and server can ping (and possibly do much more to) each other via the IPsec transport channel though. Trying to ping my iPod from another host on the subnet does not work so the broken connection beyond tun0 is both ways.

Just as a quick sanity check: double-check that IP forwarding is enabled 
and your FORWARD table of iptables is not blocking things.

