[vpn-help] -12 against ipsec-tools 0.6.6

Peter Eisch peter at boku.net
Thu Jul 27 14:46:33 CDT 2006


On 7/27/06 2:12 PM, "Matthew Grooms" <mgrooms at shrew.net> wrote:

> Here is the current situation. The client is connecting properly but has
> no idea what traffic to forward across the tunnel. Its requesting a
> network list from the server via modecfg. Racoon receives the request
> but has no split networks defined in its mode_cfg section. For this
> reason it can't reply with the information the client needs to operate.
> 

Is the message that requests the network this:

  WARNING: Ignored attribute 28678

Might I propose that if the client doesn't get a split network config from
the server that the rule be added to encrypt everything _except_ the
server:port much like the phase1-up.sh does with racoon as a client?

peter




More information about the vpn-help mailing list