Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 26 Aug 2016 09:05:19 +0200
From:      Franco Fichtner <franco@lastsummer.de>
To:        abi <abi@abinet.ru>
Cc:        freebsd-ports@freebsd.org
Subject:   Re: security/strongswan start=route issue
Message-ID:  <B703B61A-A48D-4387-AF88-6ABE3255A2B2@lastsummer.de>
In-Reply-To: <20160826100000.1126b42d107c93d648a8957a@abinet.ru>
References:  <20160826100000.1126b42d107c93d648a8957a@abinet.ru>

next in thread | previous in thread | raw e-mail | index | archive | help
Hi,

> On 26 Aug 2016, at 9:00 AM, abi <abi@abinet.ru> wrote:
>=20
> I'd like to open PR on upstream, but I want be sure that the problem =
exists not only for me, as the problem looks strange.
> The issue is that tunnel behaves different if it autostarts =
(auto=3Dstart) and when it starts when traffic registered between left =
and right side. (auto=3Droute).

This works fine in our OPNsense setups.

Make sure you use ping with the option "-S $LEFT_IP", it will
only auto-route local traffic that originates from within your
leftsubnet.


Cheers,
Franco=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?B703B61A-A48D-4387-AF88-6ABE3255A2B2>