IPSEC Tunnel Routing question

Tom Thompson tomt at callcds.com
Fri Dec 5 14:01:58 PST 2003

Thanks for the reply!

I have tried what you recommended and basically nothing can talk over the vpn tunnels unless it is addressed on Building A or Building B's network. 

I have a router with an internet connection sitting at Building A and I set the defaultrouter in Building B to be the router address.  I can ping the router but the traffic will not even go thru the vpn and I get ping saying the network is down.  

I can post configs if you think it will help


---------- Original Message ----------------------------------
From: Matthew Faircliff <matt at databias.co.za>
Date:  Fri, 5 Dec 2003 11:23:33 +0000

>Hello Tom,
>So I assume by working you mean that the two computers can ping one
>If so, simply set the computer in Builing B to have a default route to
>the IP of the computer in Building A:
>[Building B]# route add default
>Where is the IP of the computer in Building A. Also, ensure
>that any firewall in A allows traffic from Building B to flow in and
>out router etc.
>Matthew Faircliff
>On Thu, Dec 04, 2003 at 06:50:08PM -0500, Tom Thompson wrote:
>Date: Thu,  4 Dec 2003 18:50:08 -0500
>From: "Tom Thompson" <tomt at callcds.com>
>To: <questions at freebsd.org>
>X-Mailer: <IMail v8.04>
>Subject: IPSEC Tunnel Routing question
>I would like to route all traffic over a gif/ipsec tunnel
>I have the following situation
>Existing internet connection in building A
>Building to building wireless(between building A and Building B)
>To secure the traffic going across the wireless I would like to run an 
>ipsec tunnel between freebsd 5.1 based machines sitting at Building A 
>and Building B.  I have the tunnels up and running but I am experiencing 
>a problem with routing.  Building B does not have an internet connection 
>so it needs to use the internet connection at Building A.
>To lay it out in more details
>Router at building A connections to the internet
>FreeBSD 5.1 machine at Building A connects to router and to wireless bridges
>FreeBSD 5.1 machine at Building B connects to Wireless bridges and internal network
>What do I need to do you get traffic to flow from Building B to 
>Building A and out A's internet connection?
>I have tried setting building B defaultrouter to building A internal address(other side of GIF tunnel)
>freebsd-questions at freebsd.org mailing list
>To unsubscribe, send any mail to "freebsd-questions-unsubscribe at freebsd.org"

More information about the freebsd-questions mailing list