On 12/5/06, Ryan Corder <[EMAIL PROTECTED]> wrote:
I never said that ping wasn't a good test...if I could use ping I would. However, in the setup where I have two machines, A and B that have addresses 192.168.2.5 and 192.168.2.6 respectively and an IPSec tunnel setup as so: A - ike esp from 192.168.2.5 to 192.168.2.6 B - ike esp from 192.168.2.6 to 192.168.2.5 trying to ping the other's address doesn't go out via the enc0 interface, but the regular bge0 default interface.
As Mathieu suggested, when you ping the other host and run a tcpdump on your bge0 interface, do you see ESP or ICMP traffic? -Martin -- "Suburbia is where the developer bulldozes out the trees, then names the streets after them." --Bill Vaughan