Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

[Users] cannot access ipsec remote host on external interface anymore

From: Andi <unki(at)gmx.at>
Date: Sun Apr 20 2003 - 01:46:10 EDT


hello!

i'm a newbie in ipsec & freeswan things, but i have now a stable ipsec connection from my home to the ipsec gateway of my firm.

a little question. let's say, the ipsec server on the other side has die external ip 1.1.1.1 and an internal network where he is at 192.168.1.1.     

my external ip of my home (a dynamic DSL modem) has the ip 2.2.2.2
(i use %any in the ipsec.conf) and the internal lan at 192.168.191.0.

i have now subnet-to-subnet routing, which works fine...

my problem is, that i'cant access the external ip of the other side
(1.1.1.1)

anymore - i had to do this, because only on this interface apache-webserver
is listening :-(.

i have done tcpdump on the ipsec0 interface on the server with 1.1.1.1 and
i see the icmp-request when i try to ping it from my side, but there will never
come an icmp-reply.

i also tried it with an extra subnet-to-host route, but these also won't work.

Do you need help?X

could anyone help me please? thanks!

greetings, andi



Users mailing list
Users@lists.freeswan.org
http://lists.freeswan.org/mailman/listinfo/users
smiley-6.png
Received on Sun Apr 20 03:29:10 2003

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 13:01:24 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library