vpn trouble

VANHULLEBUS Yvan vanhu at FreeBSD.org
Wed Jun 23 08:58:35 UTC 2010


On Wed, Jun 23, 2010 at 10:52:19AM +0200, ralf at dzie-ciuch.pl wrote:
[....]
> When on one console i type tcpdump -i gif0 I don't receive any values!
> So I thing I should set route do it right?
> 
> Can you tell me how to do it?
> 
> netstat -rn print something like this:
> Destination        Gateway            Flags    Refs      Use  Netif Expire
> default            78.x.x.x     UGS         3 49544466   bce1
> 10.10.1.90         10.20.0.1          UH       2238    13439   gif0
> 
> Is it ok? or I do something wrong?

Check with your peer's configuration, but using such extra IP-IP
encapsulation (via gif interfaces on FreeBSD) is NOT the usual way of
setting up IPsec tunnels....


If your peer expects usual IPsec setups, you should just have SPD
entries as specified in your very first mails.


Yvan.


More information about the freebsd-net mailing list