[Openswan Users] IPsec tunnel between 3 public servers

Damir Reic dreic at email.t-com.hr
Sat Jul 13 10:46:35 UTC 2013


Hi,

 

i have a question. If i have 3 servers with public IP that i want to chain
connect with Openswan, can that be done?

 

server1--->server2--->server3

 

So i want to be able to reach server3 from server1 over server2 trough IPsec
tunnel.

 

server1 = 1.1.1.1

server2= 2.2.2.2

server3= 3.3.3.3

 

 

I tried following config:

 

SERVER1

 

left=1.1.1.1

leftnexthop=%defaultroute

right=2.2.2.2

rightsubnets={2.2.2.2/32 3.3.3.3/32}

 

 

SERVER2

 

left=2.2.2.2

leftsubnets={2.2.2.2/32 3.3.3.3/32}

leftnexthop=%defaultroute

right=1.1.1.1

 

 

left=2.2.2.2

leftsubnets={2.2.2.2/32 1.1.1.1/32}

leftnexthop=%defaultroute

right=3.3.3.3

 

 

 

SERVER3

 

left=3.3.3.3

leftnexthop=%defaultroute

right=2.2.2.2

rightsubnets={2.2.2.2/32 1.1.1.1/32}

 

 

 

But VPN tunnel won't go up with these subnet combinations.

 

 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openswan.org/pipermail/users/attachments/20130713/c7e6dbea/attachment-0001.html>


More information about the Users mailing list