Re: 4.4-CURRENT problems getting IPSec to function

2001-11-16 Thread eilko . bos
>From the keyboard of Erik Norvelle, written on Fri, Nov 16, 2001 at 04:54:07AM -0700: > Lars (and anyone else who can help): > > I have attempted to follow your advice, by configuring my machines to use > IPSEC tunnel mode only. However, I still can't get ping packets to go > between the two in

Re: 4.4-CURRENT problems getting IPSec to function

2001-11-16 Thread Lars Eggert
Erik Norvelle wrote: > --- Begin included file --- flush; spdflush; > > # Note that the add rules are the same as on Node B! spdadd > 10.20.0.0/24 192.168.1.0/24 any -P in ipsec esp/tunnel/xxx.yyy.40.122-xxx.yyy.40.135/require; > > spdadd 192.168.1.0/24 10.20.0.0/24 any -P out ipsec esp/

RE: 4.4-CURRENT problems getting IPSec to function

2001-11-16 Thread Erik Norvelle
bject: Re: 4.4-CURRENT problems getting IPSec to function Erik Norvelle wrote: > My setup is as follows: > > Network #1 (192.168.1.0/24) > | > | > Gateway #1 (inner interface [xl0] = 192.168.1.1) >(outer interfa