[Openswan Users] weighted routing

Daniel Cave dan.cave at me.com
Thu Oct 18 17:42:22 EDT 2012


Fatcharly 

Interesting question, i was wondering about the same thing earlier.

Does anyone know if it's possible to create a bonded interface which uses two KLIPS/regular ethX interfaces as its slave , like you would using a regular nic?

Dan

ipsec1 
On 18 Oct 2012, at 16:16, fatcharly at gmx.de wrote:

> Hi,
> 
> is it possible to do something like weighted routing with openswan. Image there are two tunnels to different gateways which leads both to the same net. When I try to start the ipsec service (with both tunnels in auto start mode), first tunnel gets established second one writes an error like "tunnel could not established, because routing for tunnel 2 exists within tunnel 1". So I thought about starting the second tunnel manual with ipsec auto --up tunnel2 when tunnel 1 is down. But there is still the problem with the routing and I cant start up tunnel 2 manual, because routing scheme is already within tunnel 1. 
> Sure, there is the solution to work with two ipsec.conf files for each tunnel one, but then I have to stop the ipsec service and all other tunnels are down for this moment. So possible but not nice.
> 
> Any suggestions are welcome
> 
> Kind regards
> _______________________________________________
> Users at lists.openswan.org
> https://lists.openswan.org/mailman/listinfo/users
> Micropayments: https://flattr.com/thing/38387/IPsec-for-Linux-made-easy
> Building and Integrating Virtual Private Networks with Openswan:
> http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155

Regards

Dan.



More information about the Users mailing list