On 12/5/06, Ryan Corder <[EMAIL PROTECTED]> wrote:

I never said that ping wasn't a good test...if I could use ping I would.
However, in the setup where I have two machines, A and B that have
addresses 192.168.2.5 and 192.168.2.6 respectively and an IPSec tunnel
setup as so:
    A - ike esp from 192.168.2.5 to 192.168.2.6
    B - ike esp from 192.168.2.6 to 192.168.2.5
trying to ping the other's address doesn't go out via the enc0
interface, but the regular bge0 default interface.

As Mathieu suggested, when you ping the other host and run a tcpdump
on your bge0 interface, do you see ESP or ICMP traffic?

-Martin

--
"Suburbia is where the developer bulldozes out the trees, then names
the streets after them."

                                                  --Bill Vaughan

Reply via email to