There 's a bug with the GRE , when there's already a connection existing , you try another new connection thru the OpenBSD box to the same VPN Server (GRE Protocol), it would not regard it as a "old" one , so OpenBSD would deny the new connection .
this bug have been always there , could anybody have any idea about it ? å¨ ï¼Berislav Purgar åéï¼ > Hello > > I have strange problem wiht GRE protocol on openbsd 5.5 (amd64) that act > only as firewall (no VPN server on them) for my small local network. > Problem is that sometime VPN connection works and i make connection but for > some strange reason sometime VPN connection does not work. tcpdump shows > that protocol 47 is unrechable (on firewall) but for some reason if i > reload pf rules it works for some time. when VPN connection works if i try > to made new one on new computer it does not work ( protocol 47 unrechable > error ). > > gre is allowed in sysctl .. i think that pf.conf rules are OK . any > suggestion what to try ? > > pf.conf is in attachment > > [demime 1.01d removed an attachment of type application/octet-stream > which had a name of pf.conf]