[Vpn-help] route problem and tcp traffic problem

Rodrigo Ferroni rferroni at gmail.com
Thu Dec 6 14:54:42 CST 2007


hi,

we are using shrew 2.0.3 (winxp) with ipsec-tools 0.7 (debian).
the connection appears to establish correctly but we have 2 problems.

after the connection success, we need to create a route manually in the
client,
for example route add 10.55.0.0(split_network include) mask 255.255.0.0
10.66.0.2 (network4)
without this we can't reach the split_network. Is there any way to pass a
gateway with mode_cfg?

after creating that route manually, we can send traffic inside the tunnel,
the first packet create the SA.
sending icmp traffic, for ex. 32 bytes or 1500 bytes (the frag works fine)
it works.
but when trying to use tcp traffic on port 80, openning a web site or ssh
connection, at firts works, but only
a few packets and then the client doesn't responds any more.

I've got racoon log's and tcpdump output if can help
thanks.
rodrigo.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.shrew.net/pipermail/vpn-help/attachments/20071206/194bbbad/attachment-0001.html>


More information about the vpn-help mailing list