[vpn-help] tunnel needs one initial ping

Andreas Hoppe hoppe at ha-systems.de
Sat Oct 16 13:25:54 CDT 2010


HI,

after solving the compile-problem, I could establish a tunnel to the
network behind the Fritz!Box 7270 through the internet.

This is what ikec puts out:

config loaded for site 'ms2.vpn'
attached to key daemon ...
peer configured
iskamp proposal configured
esp proposal configured
ipcomp proposal configured
client configured
local id configured
remote id configured
pre-shared key configured
bringing up tunnel ...
network device configured
tunnel enabled

But before I can use the tunnel I'll have to ping one IP-adress in the
foreign network, e.g. the Fritz!Box oder one of the network-printers.
The first ping don't reaches the foreign network but the second does,
like this example shows:

PING 192.168.0.253 (192.168.0.253) 56(84) bytes of data.
64 bytes from 192.168.0.253: icmp_seq=2 ttl=64 time=52.9 ms

--- 192.168.0.253 ping statistics ---
2 packets transmitted, 1 received, 50% packet loss, time 999ms
rtt min/avg/max/mdev = 52.923/52.923/52.923/0.000 ms

After the second ping (the "reciebed ping") I can use the network as it
should be.

For now, I start the tunnel with a bash-script that pings the foreign
network after establishing the tunnel. But this is only a workaround.

Is the "ping-problem" a known problem? I use the newest version of shrew.

Bye

Andreas

-- 
Dipl.-Ing. Andreas Hoppe 
An der Acher 35
77855 Achern
T.: 07841 / 601975




More information about the vpn-help mailing list