Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

[Users] Ipsec & arp pbs

From: Alain Ganuchaud <ganuchaud(at)octant-fr.com>
Date: Wed Feb 26 2003 - 13:11:06 EST


Hi All,

I've got a trouble with Ipsec & arp on an IPsec Gateway, any help is appreciated.

The network is the following:

Private network A -- Ipsec Gw A -- Router -- Ipsec Gw B -- Private network B

On Ipsec Gw B / without Ipsec not running :
- I can ping everywhere, arp tables are ok

On Ipsec Gw B / with Ipsec running:
- I can ping everywhere (of course except private networks) except the local interface of the router in front of Gw B(but can ping over the router, ie the Ipsec Gw A) ???

  • Ipsec SA is established (but VPN does not work)
  • The Gw B arp table is empty.
  • ping to the router in front of Gw B fails with "invalid argument", no frame is going out of Gw B (tcpdump on router shows it)
  • I do not success to update the arp table with "arp -s"

Gw B is Freeswan 1.97
Gw A is Freeswan 1.98

It seems that Ipsec is modifying the arp protocol but I do not know the way he is doing that, can somebody help? Many Thanks,
Alain

Do you need help?X

Note: As I am not in list, please reply to all.


            OCTANT INFORMATIQUE
 173, rue du rocher de Lorzier     Parc le Pommarin
         Centr'Alp   38430 Moirans
     Tél: 0476350861   Fax: 0476354616

              Alain GANUCHAUD
          Portable: 06 08 006 111

     Email: ganuchaud@octant-fr.com
     URL: 
http://www.octant-fr.com
____________________________________________




_______________________________________________
Users mailing list
Users@lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users Received on Wed Feb 26 14:41:58 2003

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 13:00:23 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library