Re: IPSEC traffic doesn't work realiably after upgrading from 4.11 to 5.4

2005-05-12 Thread Ari Suutari
(replying to myself again...) Ari Suutari wrote: Some more information to this one: This seems to be some kind of odd routing problem. I just recreated the setup under vmware and noticed that when the problem occurs the outgoing ESP packets are flowing on interface that has the default route (em0),

Re: IPSEC traffic doesn't work realiably after upgrading from 4.11 to 5.4

2005-05-12 Thread Ari Suutari
Hi again, Some more information to this one: This seems to be some kind of odd routing problem. I just recreated the setup under vmware and noticed that when the problem occurs the outgoing ESP packets are flowing on interface that has the default route (em0), not on tun0. The routing table entry l

IPSEC traffic doesn't work realiably after upgrading from 4.11 to 5.4

2005-05-11 Thread Ari Suutari
Hi, I have upgraded a vpn server from FreeBSD 4.11 to 5.4-RELEASE. The box as about 20 vpn connections to other FreeBSD machines, the physical connection is via tun0 ... tun20 devices. Traffic flow is something like this: my internal net -> vpn server em1 -> vpn server ipsec ->