Re: VPN route failover

2012-12-17 Thread Stuart Henderson
On 2012-12-15, Henry Stilmack wrote: > On 12/14/2012 03:27 PM, Beto wrote: >> Hi, SiteB and Sitec have OpenBSD Firewall ? >> >> The vpn is firewall to firewall, the manage of network is only route add >> xxx xx >> >> > I'm not sure what SiteB and SiteC are running - I think either Juniper > or Cis

Re: VPN route failover

2012-12-14 Thread Beto
this is what you need, sorry for my English 2012/12/14 Beto > Ok, I tell him I have my settings > > SiteASiteB > 192.168.1.x fwa fwb 192.168.2.x > | > fwc > > 192.168.3.x > >

Re: VPN route failover

2012-12-14 Thread Beto
Ok, I tell him I have my settings SiteASiteB 192.168.1.x fwa fwb 192.168.2.x | fwc 192.168.3.x SiteC Site A can see the sites B and C, the Site B can see A and C, the sit

Re: VPN route failover

2012-12-14 Thread Henry Stilmack
On 12/14/2012 03:34 PM, Beto wrote: > I understand a little more, and siteC siteB handle the same firewall ? or > are separate firewall? > No, they are at two completely different locations, but both feed into the same internal network(s) /SiteB\ SiteA/ \-Protected

Re: VPN route failover

2012-12-14 Thread Beto
I understand a little more, and siteC siteB handle the same firewall ? or are separate firewall? 2012/12/14 Henry Stilmack > On 12/14/2012 03:27 PM, Beto wrote: > > Hi, SiteB and Sitec have OpenBSD Firewall ? > > > > The vpn is firewall to firewall, the manage of network is only route add > > x

Re: VPN route failover

2012-12-14 Thread Beto
Hi, SiteB and Sitec have OpenBSD Firewall ? The vpn is firewall to firewall, the manage of network is only route add xxx xx 2012/12/14 Henry Stilmack > Running OpenBSD 4.5 (I know, I should upgrade it), with isakmpd and ipsec. > > Here's what I want to do: > > |--|==

Re: VPN route failover

2012-12-14 Thread Henry Stilmack
On 12/14/2012 03:27 PM, Beto wrote: > Hi, SiteB and Sitec have OpenBSD Firewall ? > > The vpn is firewall to firewall, the manage of network is only route add > xxx xx > > I'm not sure what SiteB and SiteC are running - I think either Juniper or Cisco somethings. What works for now is to bring

VPN route failover

2012-12-14 Thread Henry Stilmack
Running OpenBSD 4.5 (I know, I should upgrade it), with isakmpd and ipsec. Here's what I want to do: |--|==SiteB) SiteA ---| Firewall | VPN Tunnels )---multiple subnets |--|==SiteC) In words: I have a site in the US wit