Skip site navigation (1)Skip section navigation (2)
Date:      28 Aug 2001 15:56:55 +0100
From:      Wayne Pascoe <wayne.pascoe@ehsrealtime.com>
To:        freebsd-questions@freebsd.org
Subject:   ipsec (almost working) problem
Message-ID:  <86r8twfd1k.fsf@pan.ehsrealtime.com>

next in thread | raw e-mail | index | archive | help
Hi all,

I have two machines running ipsec. 

Machine A can ping machine B external interface and internal interface
Machine B can ping machine A external interface only

Machine A should be able to ping machines on the same network as
Machine B using Machine B as a network, but it can't.

ping 10.222.3.5 times out. ping 10.222.3.7 works (.7 is the internal
interface on machine B). 

Doing a traceroute 10.222.3.5 gives me :

traceroute to 10.222.3.5 (10.222.3.5), 64 hops max, 40 byte packets
 1  10.222.3.7 (10.222.3.7)  95.181 ms  98.802 ms  99.588 ms
 2  * *

I am assuming that I am getting there as machine A can get to Machine
B internal interface. If I flush the ipsec rules, it can no longer get
that far.

Any ideas on how to complete the last leap ?

Thanks,

-- 
Wayne Pascoe <wayne.pascoe@ehsrealtime.com>
Phone : +44 (0) 20 7017 1221

Things fall apart; the center cannot hold;
Mere anarchy is loosed upon the world. - Yeats

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?86r8twfd1k.fsf>