Re: Difficult routing problem

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
From: Thomas Schoeller
Date: Saturday, October 6, 2007 - 9:17 am

On Sat, Oct 06, 2007 at 10:37:12AM -0400, Dave Anderson wrote:

this will not work. ipsec will not encap packets that not belong to a
flow.

you need a second ipsec flow like on GW B:
ike esp from LAN_B/24 to vendor/18 peer OPENBSD_A_External
and on GW A:
ike esp from VENDOR/18 to LAN_B/24 peer OPENBSD_B_External
and then a route on GW A to the vendor network.

i think this will do the trick.
thomas
Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
Difficult routing problem, Layne Evans, (Sat Oct 6, 1:04 am)
Re: Difficult routing problem, Dave Anderson, (Sat Oct 6, 7:37 am)
Re: Difficult routing problem, Thomas Schoeller, (Sat Oct 6, 9:17 am)
Re: Difficult routing problem, Layne Evans, (Mon Oct 8, 12:24 am)