Hmmm, Maybe I do some error using gateway 10.20.0.1? Maybe I have to set something in route to network 10.10.1.x go throught gif0 interface?
Ralf On Wed, 23 Jun 2010 10:58:31 +0200, VANHULLEBUS Yvan <va...@freebsd.org> wrote: > On Wed, Jun 23, 2010 at 10:52:19AM +0200, r...@dzie-ciuch.pl wrote: > [....] >> When on one console i type tcpdump -i gif0 I don't receive any values! >> So I thing I should set route do it right? >> >> Can you tell me how to do it? >> >> netstat -rn print something like this: >> Destination Gateway Flags Refs Use Netif >> Expire >> default 78.x.x.x UGS 3 49544466 bce1 >> 10.10.1.90 10.20.0.1 UH 2238 13439 gif0 >> >> Is it ok? or I do something wrong? > > Check with your peer's configuration, but using such extra IP-IP > encapsulation (via gif interfaces on FreeBSD) is NOT the usual way of > setting up IPsec tunnels.... > > > If your peer expects usual IPsec setups, you should just have SPD > entries as specified in your very first mails. > > > Yvan. > _______________________________________________ > freebsd-net@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-net > To unsubscribe, send any mail to "freebsd-net-unsubscr...@freebsd.org" _______________________________________________ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "freebsd-net-unsubscr...@freebsd.org"