From: VANHULLEBUS Y. <va...@fr...> - 2006-05-23 12:42:57
|
On Tue, May 23, 2006 at 02:32:01PM +0200, John Russel wrote: > now i have installed fedora core 5 with ipsec-tools-0.6.4-1.1 on the > vpn gateway. > > with the following configuration either the connection from "private- > ip-1" to "private-ip-2" or from "private-ip-1" to "private-ip-3" > works, but not both (from "private-ip-1" to "private-ip-2" and > "private-ip-3"). > > can someone help? [....] > spdadd private-ip-1/32 private-ip-2/32 any -P out ipsec > esp/tunnel/public-ip-1-public-ip-2/require; > > spdadd private-ip-2/32 private-ip-1/32 any -P in ipsec > esp/tunnel/public-ip-2-public-ip-1/require; > # > spdadd private-ip-1/32 private-ip-3/32 any -P out ipsec > esp/tunnel/public-ip-1-public-ip-2/require; > > spdadd private-ip-3/32 private-ip-1/32 any -P in ipsec > esp/tunnel/public-ip-2-public-ip-1/require; Try to set up "unique" SPD entries instead of "require" ones. Yvan. |