[vpn-help] ike adds another default route

kevin shrew-vpn klmlk at hotmail.com
Thu May 20 19:58:19 CDT 2010


On Thu, 20 May 2010 14:35:07 -0700 (PDT)
Torquil Gault <torquilgault at yahoo.com> wrote:

> hi,
> 
> I'm new to ike and all that, but when i connect to the VPN it creates
> another default route which then plays havoc with any other
> networking stuff I want to do.
> 
> 172.18.40.0  172.18.57.70    255.255.254.0   UG        0 0          0
> tap0 0.0.0.0         192.168.1.254   0.0.0.0         UG        0
> 0          0 eth0 
> 
> is there anyway I can get it to stop adding it as a default route ???
> i had a look thro the doco and googled without luck :(
> 
> many thanks,
> 
> torquil
> 

Hi Torquil, I'm assuming that you're using the Shrew client on
Windows.  The problem is likely with the policy you have defined for
the VPN configuration.  If you open the properties for your VPN
connection in Access Manager and go to the Policy tab, you'll probably
see that "Obtain Topology Automatically or Tunnel All" is selected.  

To fix the problem, unselect that option and then use the Add button
to add specifically the IP network that you wish the VPN to apply to.
For example, if your corporate network uses 111.222.333.x, you'd use the
following settings:

Type: Include
Address: 111.222.333.0
Netmask: 255.255.255.0

Note, you may also have to change the VPN definition on the VPN
gateway, since some gateways have to have the client and the gateway
securing the same network specification exactly.



More information about the vpn-help mailing list