ipsec-tools/racoon/ipsec routing problem

Bill Campbell linux-sxs at celestial.com
Fri Jul 18 18:33:04 PDT 2008


On Sat, Jul 19, 2008, James McDonald wrote:
> James McDonald wrote:
>>
>>
> Oh and another thing.
>
> If you use OpenVPN with the bridged setup which groups it's tap0  
> interface with the internal LAN Interface address you won't have a hope  
> in Haedes of getting the ipsec tunnel2tunnel setup working. The kernel  
> or whatever is doing the razzle dazzle, gets all midlife about it, and  
> tries to find itself, but fails miserably.

I'm beginning to think that OpenVPN and IPsec don't play nicely
on the same machine in any case.

I prefer using OpenVPN in any case, but would like to use IPSec
where a remote office has only a Windows machine with a network
printer that we need to access from the main office.

We may just say hell with it, and put in a router appliance on
another public IP in the main office for the remote office.  We
have sufficient public IPs for this to work.

I have not tried OpenVPN in bridging mode, only tunnelling.

Bill
-- 
INTERNET:   bill at celestial.com  Bill Campbell; Celestial Software LLC
URL: http://www.celestial.com/  PO Box 820; 6641 E. Mercer Way
Voice:          (206) 236-1676  Mercer Island, WA 98040-0820
Fax:            (206) 232-9186

It is better to die on your feet than to live on your knees!
    -- Emiliano Zapata.



More information about the Linux-users mailing list