Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

[Users] how do i set up a vpn between 2 local networks?

From: Peter Edbrooke <peter(at)istnetworks.com>
Date: Tue Feb 18 2003 - 23:56:33 EST


Hello,

I have 2 networks set up simulating the 2 networks of our office. In real life our networks are seperated by the Internet, but until I can prove it works on a local test network I am not allowed to install the VPN onto the real network.

I will call the networks A and B.
A has IP addresses in the range 192.168.0.X B has IP addresses in the range 192.168.1.X

Both test networks are connected to seperate hubs. One computer on each hub has 2 network card and these cards are connected via a crossover cable (I will refer to these machines as Gateway A and Gateway B).

My first question is, can I use Free/SWan to implement a VPN between these 2 networks?

I assume I can, but have been unable to get the connection to work properly.

These are the settings of the network, which I think may be the main cause of the problem.
Gateway A has an internal IP address of 192.168.0.50, subnet mask 255.255.255.0 and a default gateway of 192.168.5.0 Gateway A has an external IP address of 192.168.5.0, no subnet mask, no gateway
Gateway B has an internal IP address of 192.168.1.50, subnet mask 255.255.255.0 and a default gateway of 192.168.6.0 Gateway A has an external IP address of 192.168.6.0, no subnet mask, no gateway

The /etc/ipsec.conf file looks like this

Do you need help?X

conn net-to-net

    left=192.168.5.0
    leftsubnet=192.168.0.0/24
    leftid=@AAA.ist.com # I'm not sure what this should be, or if it should be used

    leftrsasigkey= # Removed
    leftnexthop=%default

    right=192.168.6.0
    rightsubnet=192.168.1.0/24
    rightid=@BB.ist.com			# Again, I'm not sure what this should be, or if
it should be used
    rightrsasigkey=			# Removed

    rightnexthop=%default
    auto=add

The connection works when I type in
ipsec auto --up net-to-net # the doco says to use --start but this is not
recognised by the command.

when I try and ping from any machine on network A, it cannot find network B. And whats worse, I had tcpdump running and I noticed it once using ESP outbound, but icmp inbound on pinging, then I played around with the configuration and now I have nothing.

This is as far as I have gotten.

Any help is greatly appreciated.

Regards
Peter



Users mailing list
Users@lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users Received on Wed Feb 19 22:10:13 2003
Do you need more help?X

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 13:00:21 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library